The following information below was provided by Kepware.

Request

Cannot find any info on Microsoft DCOM Hardening effects on Kepware and OPC DA. Are there patches or recommended mitigation?

Document - CS350729

"Unable to establish OPC DA communication after installing Microsoft DCOM Hardening patches (CVE-2021-26414) with PTC Kepware Products" Modified: 07-Jun-2022

Applies To

Description

Cause

This notice informs you of a potential anomaly that exists with PTC - Kepware® products that will be unable to establish proper DCOM connection after installing Microsoft® DCOM Hardening patch to address CVE-2021-26414 as described in MS KB5004442 - Manage changes for Windows DCOM Server Security Feature Bypass (CVE-2021-26414).

Microsoft is releasing multiple Windows cumulative updates to address CVE-2021-26414. CVE-2021-26414 lists the individual patches. The Microsoft patches address a vulnerability in DCOM. The Microsoft patches increase the minimum authentication level used when establishing DCOM connections. The affected Kepware® products use OPC-DA or are using Windows® APIs to establish DCOM connections between two computers.

Classic OPC-DA utilizes DCOM communications to pass information between workstations. Kepware connectivity applications include an OPC-DA client interface that enables many of them to exchange data with third-party OPC-DA servers. Similarly, KEPServerEX, ThingWorx Kepware Server, OPC Aggregator and LinkMaster function as an OPC-DA server. The DCOM authentication level elevation impacts all OPC-DA communications from these products and any third-party OPC-DA clients and servers running on different workstations (Note OPC-DA communication within one workstation or OPC UA communication are not affected).

Resolution

General Information:

Temporary Workaround:

Resolution:

User-added image

 

 

User-added image

Other resolution options:

Related Articles from Kepware

 impact from Microsoft DCOM enhanced security(KB5004442)

 Windows DCOM server security feature bypass impact on PTC ThingWorx Products