I thought I would give a Public Service Announcement as a warning about expiring certificates.
Expiring Certificates created a time bomb for me this past weekend in terms of their visibiltiy within Ignition.
Sunday morning 6:02 am, I got a call from an operator, then an instrument tech, I am already thinking, this is trouble, right when the shift started, they must have been waiting to contact me on this, I wonder how long this problem has been going on. I call and they said that there were black dots on top of the data values and nothing is moving. I remotely login and see the same, I am actually not familiar with black dots on data, but the data isn't moving, so I start my debug process there.
I look at Ignition, its running, I look at the PLC, its running, so it must be the Kepware and the Kepware logs tell me that it is a certificate problem, I see the connection is faulted within Ignition. The date is 5/17/2025, I am thinking, how do I have a certificate fail on a Saturday night at midnight with no warning? Fortunately the plant is running in steady state, no changes are required, the PLCs are running all the processes, but no visiblity, no control, no history data, this is going to be a mess.
But no problem, I have an Ignition Backup running, I go look at it and all expired certificates of the same date. I say again, no problem, I have an offline server for exactly this situation, I boot it up, connect it to the network, and the certificates are all expired on the same day, which makes sense, they all came from the same source.
I am not an Ignition expert, but I deal with certificates all the time, not a big deal, I search for posts about expiring certificates and I find a few posts, and finally a link to a setup set of instructions. I see that the Kepware is straight forward, just click the button, reissue and 3 more years, but it still doesn't work, so I now I go to the Ignition set of instructions.
It is a long set, but not too complicated, so I dig in, go through the steps, and it doesn't work. I try again, and again, the definition of insanity is setting in. I search for more instructions, any deviations, try again. Now I am desperate.
I open a support ticket on the Ignition site, take all the screen shots that I can and send a plea for help. And I wait, its now in the evening, the over night lone plant operator is instructed go sit in the plant, even though the visibility of plant operations is limited, and they have no control. Fortunately, they are in steady state, no changes are required and I just cross my fingers.
6am Monday morning comes, no disasters have happened, and I finally get an email from support asking for my serial number. We do the exhange, I now have the priveleged access and I get a phone call, we go to share screens. I knew it would be something simple, and in 15 minutes, we solved it, but it wasn't actually intuitive. I needed to reset the password on the connection. I should have tried it, but I had the password, I just couldn't imagine resetting it.
I hope this was somewhat entertaining. I still say, that anything that will stop your plant systems from running without warning is a time bomb and everyone with an Ignition 8.1 system has one ticking inside.