---
title: Manage OPC UA Policies
slug: manufacturing-connect-edge/manage-opc-ua-policies
docTags: 
createdAt: 2022-09-26T16:07:10.000Z
---

You can enable and disable policies by navigating t&#x6F;**&#x20;OPC&#x20;**>**&#x20;Management**. &#x20;

From the **OPC&#x20;**> **Management&#x20;**&#x70;age, refer to the *Security Settings&#x20;*&#x73;ection.&#x20;

## Security Modes

![](https://api.archbee.com/api/optimize/SSUUxKZUk9bFTEPNn_6Zo/3S7qj8KwWG7-zE3giocos_image.png)

- **None**: No encryption type.
- **Sign**: Manufacturing Connect Edge signs messages from the server to assure recipients that the sender is authentic and not an imposter.
- **SignAndEncrypt**: Manufacturing Connect Edge both signs and encrypts messages from the server to prevent any attackers from reading plain text messages from the server.

# Security Policies

![](https://api.archbee.com/api/optimize/SSUUxKZUk9bFTEPNn_6Zo/yaXE6K38kVGTsE_zfEYXU_image.png)



- **None**: No encryption type.
- **Basic256Sha256**: 256-Bit encryption. It supports Sha256 or stronger hash algorithms for certificates.
- **Basic256**: 256-Bit encryption. It supports the Sha1 and Sha256 hash algorithms for certificates.
- **Basic128Rsa15**: 128-Bit encryption that uses RSA15 as a Key-Wrap. It supports Sha1 or stronger hash algorithms for certificates.
- **Aes256\_Sha256\_RsaPss**: 256-bit Advanced Encryption Standard (AES) using the RSA Probabilistic Signature Scheme. &#x20;
- **Aes128\_Sha256\_RsaOaep**: 128-bit Advanced Encryption Standard (AES) using the RSA with Optimal Asymmetric Encryption Padding.&#x20;

# Restart OPC UA Server

After enabling or disabling a policy, you must restart the OPC UA Server. See [Manage the OPC UA Server](docId:0expfrgp1Z1AYxz4ddlXy) to learn more.&#x20;

