Hi Alessandro
> is there the voms server certificate (pem file) in
> /etc/grid-security/vomsdir on your UI?
>
>
>
Yes it is, we can found our voms pem file
# ls -lisa /etc/grid-security/vomsdir/voms.egee.cesga.es.pem
763488 4 -rw-r--r-- 1 root root 2344 Jul 7 14:18
/etc/grid-security/vomsdir/voms.egee.cesga.es.pem
# cat /etc/grid-security/vomsdir/voms.egee.cesga.es.pem
Bag Attributes
friendlyName: host/voms.egee.cesga.es's ID
localKeyID: 44 74 1F AE CC DB 67 60 5E 2C 92 7D 2F B0 E6 CE 3D 01 08 F5
subject=/DC=es/DC=irisgrid/O=cesga/CN=host/voms.egee.cesga.es
issuer=/DC=es/DC=irisgrid/CN=IRISGridCA
-----BEGIN CERTIFICATE-----
MIIF4zCCBMugAwIBAgICBwowDQYJKoZIhvcNAQEFBQAwQzESMBAGCgmSJomT8ixk
ARkWAmVzMRgwFgYKCZImiZPyLGQBGRYIaXJpc2dyaWQxEzARBgNVBAMTCklSSVNH
...
...
I don't know why we got these errors. Checking an strace:
# strace voms-proxy-info -debug --all
...
...
stat64("/etc/grid-security/certificates", {st_mode=S_IFDIR|0755,
st_size=20480, ...}) = 0
getuid32() = 522
getuid32() = 522
open("/home/asimon/.globus/usercert.pem", O_RDONLY) = 3
open("/tmp/x509up_u522", O_RDONLY) = 4
fstat64(4, {st_mode=S_IFREG|0600, st_size=6550, ...}) = 0
mmap2(NULL, 4096, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_ANONYMOUS, -1,
0) = 0xf7da0000
read(4, "-----BEGIN CERTIFICATE-----\nMIIK"..., 4096) = 4096
open("/tmp/x509up_u522", O_RDONLY) = 5
fstat64(5, {st_mode=S_IFREG|0600, st_size=6550, ...}) = 0
mmap2(NULL, 4096, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_ANONYMOUS, -1,
0) = 0xf7d9f000
read(5, "-----BEGIN CERTIFICATE-----\nMIIK"..., 4096) = 4096
read(5, "OZeuBaC2UJ3XAiEA1X8n+0TxShi/\nuWd"..., 4096) = 2454
read(5, "", 4096) = 0
close(5) = 0
munmap(0xf7d9f000, 4096) = 0
rt_sigaction(SIGPIPE, NULL, {SIG_DFL}, 8) = 0
rt_sigaction(SIGPIPE, {SIG_IGN}, NULL, 8) = 0
open("/dev/null", O_WRONLY|O_CREAT|O_TRUNC|O_LARGEFILE, 0666) = 5
fcntl64(5, F_SETFD, FD_CLOEXEC) = 0
fstat64(5, {st_mode=S_IFCHR|0666, st_rdev=makedev(1, 3), ...}) = 0
ioctl(5, SNDCTL_TMR_TIMEBASE or TCGETS, 0xffd98ad8) = -1 ENOTTY
(Inappropriate ioctl for device)
mmap2(NULL, 4096, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_ANONYMOUS, -1,
0) = 0xf7d9f000
getuid32() = 522
geteuid32() = 522
getgid32() = 522
getegid32() = 522
getuid32() = 522
geteuid32() = 522
getgid32() = 522
getegid32() = 522
stat64("/home/asimon/.rnd", {st_mode=S_IFREG|0600, st_size=1024, ...}) = 0
open("/home/asimon/.rnd", O_RDONLY) = 6
fstat64(6, {st_mode=S_IFREG|0600, st_size=1024, ...}) = 0
mmap2(NULL, 4096, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_ANONYMOUS, -1,
0) = 0xf7d9e000
read(6,
"\201\337H\232\246*\250i\25\341E\177\250\7\23\224\376\311t\236\36\fL\333\316\0379\34\273\347\4`"...,
4096) = 1024
read(6, "", 4096) = 0
close(6) = 0
munmap(0xf7d9e000, 4096) = 0
socket(PF_FILE, SOCK_STREAM, 0) = 6
connect(6, {sa_family=AF_FILE, path="/tmp"}, 6) = -1 ECONNREFUSED
(Connection refused)
close(6) = 0
open("/etc/grid-security/vomsdir",
O_RDONLY|O_NONBLOCK|O_LARGEFILE|O_DIRECTORY) = 6
fstat64(6, {st_mode=S_IFDIR|0755, st_size=4096, ...}) = 0
fcntl64(6, F_SETFD, FD_CLOEXEC) = 0
open("/etc/grid-security/certificates",
O_RDONLY|O_NONBLOCK|O_LARGEFILE|O_DIRECTORY) = 7
fstat64(7, {st_mode=S_IFDIR|0755, st_size=20480, ...}) = 0
fcntl64(7, F_SETFD, FD_CLOEXEC) = 0
close(7) = 0
close(6) = 0
write(2, "WARNING: Unable to verify signat"..., 80WARNING: Unable to
verify signature! Server certificate possibly not installed.
) = 80
write(2, "Error: ", 7Error: ) = 7
write(2, "Unable to determine hostname fro"..., 37Unable to determine
hostname from AC.) = 37
write(2, "\n", 1
) = 1
time(NULL) = 1215607200
open("/etc/localtime", O_RDONLY) = 6
fstat64(6, {st_mode=S_IFREG|0644, st_size=946, ...}) = 0
fstat64(6, {st_mode=S_IFREG|0644, st_size=946, ...}) = 0
mmap2(NULL, 4096, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_ANONYMOUS, -1,
0) = 0xf7d9e000
read(6,
"TZif\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\0\10\0\0\0\10\0\0\0\0"...,
4096) = 946
close(6) = 0
munmap(0xf7d9e000, 4096) = 0
fstat64(1, {st_mode=S_IFCHR|0620, st_rdev=makedev(136, 4), ...}) = 0
mmap2(NULL, 4096, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_ANONYMOUS, -1,
0) = 0xf7d9e000
write(1, "subject : /DC=es/DC=irisgrid/O"..., 63subject :
/DC=es/DC=irisgrid/O=cesga/CN=alvarosimon/CN=proxy
) = 63
write(1, "issuer : /DC=es/DC=irisgrid/O"..., 54issuer :
/DC=es/DC=irisgrid/O=cesga/CN=alvarosimon
) = 54
write(1, "identity : /DC=es/DC=irisgrid/O"..., 54identity :
/DC=es/DC=irisgrid/O=cesga/CN=alvarosimon
) = 54
write(1, "type : proxy\n", 18type : proxy
) = 18
write(1, "strength : 512 bits\n", 21strength : 512 bits
) = 21
write(1, "path : /tmp/x509up_u522\n", 29path : /tmp/x509up_u522
) = 29
write(1, "timeleft : 11:06:54\n", 21timeleft : 11:06:54
) = 21
stat64("/etc/localtime", {st_mode=S_IFREG|0644, st_size=946, ...}) = 0
write(1, "=== VO cesga extension informati"..., 39=== VO cesga extension
information ===
) = 39
write(1, "VO : cesga\n", 18VO : cesga
) = 18
write(1, "subject : /DC=es/DC=irisgrid/O"..., 54subject :
/DC=es/DC=irisgrid/O=cesga/CN=alvarosimon
) = 54
write(1, "issuer : /DC=es/DC=irisgrid/O"..., 66issuer :
/DC=es/DC=irisgrid/O=cesga/CN=host/voms.egee.cesga.es
) = 66
write(1, "attribute : /cesga\n", 19attribute : /cesga
) = 19
write(1, "timeleft : 11:06:54\n", 21timeleft : 11:06:54
) = 21
stat64("/etc/localtime", {st_mode=S_IFREG|0644, st_size=946, ...}) = 0
close(4) = 0
munmap(0xf7da0000, 4096) = 0
write(5, "/opt/globus/lib/opt/globus/lib", 30) = 30
exit_group(1) = ?
Cheers and thanks
Alvaro
|