Also, please not that : - The Australian CRL is outdated (nextUpdate field : Apr 13 21:21:37 2005 GMT) - castorgrid.cern.ch seems to be one of those machines where something is currently wrong (and this might not be directly related to the Grid-FR CA...) : >edg-gridftp-ls gsiftp://castorgrid.cern.ch/tmp error the server sent an error response: 535 535-FTPD GSSAPI error: GSS Major Status: Authentication Failed 535-FTPD GSSAPI error: GSS Minor Status Error Chain: 535-FTPD GSSAPI error: 535-FTPD GSSAPI error: accept_sec_context.c:170: gss_accept_sec_context: SSLv3 handshake problems 535-FTPD GSSAPI error: globus_i_gsi_gss_utils.c:881: globus_i_gsi_gss_handshake: Unable to verify remote side's credentials 535-FTPD GSSAPI error: globus_i_gsi_gss_utils.c:854: globus_i_gsi_gss_handshake: SSLv3 handshake problems: Couldn't do ssl handshake 535-FTPD GSSAPI error: OpenSSL Error: s3_srvr.c:1816: in library: SSL routines, function SSL3_GET_CLIENT_CERTIFICATE: no certificate returned 535-FTPD GSSAPI error: globus_gsi_callback.c:351: globus_i_gsi_callback_handshake_callback: Could not verify credential 535-FTPD GSSAPI error: globus_gsi_callback.c:490: globus_i_gsi_callback_cred_verify: Could not verify credential 535-FTPD GSSAPI error: globus_gsi_callback.c:850: globus_i_gsi_callback_check_signing_policy: Error with signing policy 535-FTPD GSSAPI error: globus_gsi_callback.c:1058: globus_i_gsi_callback_check_gaa_auth: Error in OLD GAA code: CA policy violation: <no reason given> 535 FTPD GSSAPI error: accepting context error the server sent an error response: 535 535-FTPD GSSAPI error: GSS Major Status: Authentication Failed 535-FTPD GSSAPI error: GSS Minor Status Error Chain: 535-FTPD GSSAPI error: 535-FTPD GSSAPI error: accept_sec_context.c:170: gss_accept_sec_context: SSLv3 handshake problems 535-FTPD GSSAPI error: globus_i_gsi_gss_utils.c:881: globus_i_gsi_gss_handshake: Unable to verify remote side's credentials 535-FTPD GSSAPI error: globus_i_gsi_gss_utils.c:854: globus_i_gsi_gss_handshake: SSLv3 handshake problems: Couldn't do ssl handshake 535-FTPD GSSAPI error: OpenSSL Error: s3_srvr.c:1816: in library: SSL routines, function SSL3_GET_CLIENT_CERTIFICATE: no certificate returned 535-FTPD GSSAPI error: globus_gsi_callback.c:351: globus_i_gsi_callback_handshake_callback: Could not verify credential 535-FTPD GSSAPI error: globus_gsi_callback.c:490: globus_i_gsi_callback_cred_verify: Could not verify credential 535-FTPD GSSAPI error: globus_gsi_callback.c:850: globus_i_gsi_callback_check_signing_policy: Error with signing policy 535-FTPD GSSAPI error: globus_gsi_callback.c:1058: globus_i_gsi_callback_check_gaa_auth: Error in OLD GAA code: CA policy violation: <no reason given> 535 FTPD GSSAPI error: accepting context Regards, Frederic Schaer Frederique Chollet a écrit : > Hello, > > It seams that GRID-FR certificates are not accepted at CERN. Is there > any plans for the update of CA rpms ? > GGUS Ticket 2161 has been opened, juste for remenbering. > Thanks for taking care. > Frédérique Chollet > > -- > L.A.P.P. - BP 110, Chemin de Bellevue > 74941 Annecy le Vieux cedex > Tel : (33) (0)4.50.09.16.44 - Fax : (33) (0)4.50.27.94.95 > e-mail: [log in to unmask] > --------------------------------------------------- >