Hi *,
can anyone check a version of CA rpms at lxgate13.cern.ch.
ca_RDIG which is valid from 0.32 only does not accepted on
lxgate13.cern.ch.
Sure, my sertificate isn't "self signed" but signed by
Russian RDIG CA.
lxpub03:~ > edg-gridftp-ls --verbose \
gsiftp://lxgate13.cern.ch/opt/edg/var/info
error the server sent an error response: 535 535-FTPD GSSAPI error: GSS
Major Status: Authentication Failed
535-FTPD GSSAPI error: GSS Minor Status Error Chain:
535-FTPD GSSAPI error:
535-FTPD GSSAPI error: accept_sec_context.c:170: gss_accept_sec_context:
SSLv3 handshake problems
535-FTPD GSSAPI error: globus_i_gsi_gss_utils.c:881:
globus_i_gsi_gss_handshake: Unable to verify remote side's credentials
535-FTPD GSSAPI error: globus_i_gsi_gss_utils.c:854:
globus_i_gsi_gss_handshake: SSLv3 handshake problems: Couldn't do ssl
handshake
535-FTPD GSSAPI error: OpenSSL Error: s3_srvr.c:1816: in library: SSL
routines, function SSL3_GET_CLIENT_CERTIFICATE: no certificate returned
535-FTPD GSSAPI error: globus_gsi_callback.c:351:
globus_i_gsi_callback_handshake_callback: Could not verify credential
535-FTPD GSSAPI error: globus_gsi_callback.c:443:
globus_i_gsi_callback_cred_verify: Could not verify credential: self
signed certificate in certificate chain
535 FTPD GSSAPI error: accepting context
error the server sent an error response: 535 535-FTPD GSSAPI error: GSS
Major Status: Authentication Failed
535-FTPD GSSAPI error: GSS Minor Status Error Chain:
535-FTPD GSSAPI error:
535-FTPD GSSAPI error: accept_sec_context.c:170: gss_accept_sec_context:
SSLv3 handshake problems
535-FTPD GSSAPI error: globus_i_gsi_gss_utils.c:881:
globus_i_gsi_gss_handshake: Unable to verify remote side's credentials
535-FTPD GSSAPI error: globus_i_gsi_gss_utils.c:854:
globus_i_gsi_gss_handshake: SSLv3 handshake problems: Couldn't do ssl
handshake
535-FTPD GSSAPI error: OpenSSL Error: s3_srvr.c:1816: in library: SSL
routines, function SSL3_GET_CLIENT_CERTIFICATE: no certificate returned
535-FTPD GSSAPI error: globus_gsi_callback.c:351:
globus_i_gsi_callback_handshake_callback: Could not verify credential
535-FTPD GSSAPI error: globus_gsi_callback.c:443:
globus_i_gsi_callback_cred_verify: Could not verify credential: self
signed certificate in certificate chain
535 FTPD GSSAPI error: accepting context
--
Best regards,
Valery Mitsyn
|