Overview
IEC TR 62541-2:2016 - OPC unified architecture: Part 2: Security Model is a Technical Report from IEC that describes the security model for OPC UA (OPC unified architecture). It documents the security environment in which OPC UA runs, defines common security terms, enumerates security threats to physical, hardware and software environments, and explains how OPC UA depends on other standards for security. The report gives an overview of security features specified in other parts of the IEC 62541 series and offers implementation guidance and best practices. This second edition (2016) contains clarifications and added explanatory text but no technical changes from the first edition.
Key topics and technical requirements
- Security objectives: Defines core objectives such as authentication, authorization, confidentiality, integrity, auditability and availability.
- Threat analysis: Details common threats relevant to OPC UA systems, including message flooding, eavesdropping, spoofing, alteration, replay, malformed messages, server profiling, session hijacking, rogue servers and credential compromise.
- Security architecture: Presents the OPC UA security architecture and relationship to site security, including how security functions are layered and where responsibility lies.
- Authentication & authorization: Explains user and application authentication approaches and requirements for user authorization.
- SecurityPolicies & Profiles: Describes the role of SecurityPolicies and Security Profiles and references their normative definitions in other parts of the OPC UA specification.
- Auditing & event management: Covers auditability requirements and patterns for single and aggregating servers, and guidance for audit event aggregation.
- Implementation guidance: Practical recommendations such as appropriate timeouts, strict message processing, random number generation, rate limiting/flow control, administrative access, alarm handling, program access and certificate management.
- Normative referencing: Clarifies that this TR is informative; any ambiguity between this report and normative parts does not reduce requirements in normative documents.
Practical applications and users
IEC TR 62541-2:2016 is useful for:
- Industrial automation vendors and OPC UA product developers designing secure servers and clients
- System integrators implementing OPC UA solutions in plants and factories
- Control engineers and OT security teams performing threat assessments and security architecture design
- Cybersecurity auditors and architects documenting conformance and best practices
- Operations teams responsible for deploying certificate management, auditing and secure communications
By mapping threats to OPC UA security mechanisms and giving deployment guidance, the report helps practitioners reduce risk in industrial control and IIoT environments.
Related standards
This Technical Report is part of the multi-part IEC 62541 (OPC UA) family and explicitly references other parts of that series for normative requirements. It also notes OPC UA’s reliance on existing international security standards (for transport, certificate and cryptographic services) when implementing secure systems.