On 30/10/2012 14:52, Jeremy Coles wrote:
> I think this affects any VOMS where the 2B certificate DNs were added manually and the old certificate was not simply replaced during a VO membership renewal. The timing seems a bit odd though and I thought the old CA was to be extended until March 2013.
>
... and in fact it has been extended. It was extended to March 2013, so
we only need to remove it before that date.
VOMS still surprises me every so often - it ought to just associate
attributes with DNs, but this insisting on using the issuer just gives
rise to one bug after the other. Of course we might have kept the
issuer DN for the new CA certificates, but this works only in the real
world, not on the grid...
In any case, the documentation doesn't mention this.
http://www.eu-emi.eu/products/-/asset_publisher/1gkD/content/voms-admin-1
... because it can't be expiry of your membership. And if it were, then
why would it warn you when it is too late? It doesn't make any sense...
-j
--
Scanned by iCritical.
|