"User Token – X509 Certificate Server Facet" Profile

 Description This Facet indicates that the use of an X509 certificates to identify users is supported.
 URI http://opcfoundation.org/UA-Profile/Security/UserToken/Server/X509Certificate

Security User X509 The Server supports a public/private key pair for user identity. The administrator shall be able to enable or disable the use of this feature including all validation steps which are defined for application instance certificates.  
Security Invalid user token Servers shall take proper measures to protect against attacks on user identity tokens. Such an attack is assumed if repeated connection attempts with invalid user identity tokens happen. See ActivateSession Service in UA Part 4.