Problem

For a given user, usage of LFC/DPM with:

  • grid-proxy-init or simple voms-proxy-init works fine,
  • voms-proxy-init -voms doesn't work fine

Solutions

Wrong VOMS setup

Check the VOMS setup on:

  • the UI
  • the LFC / DPM server

On LFC & UI, /etc/grid-security/vomsdir contains VO VOMS server

$ ls -ld /etc/grid-security/vomsdir/
drwxr-xr-x    2 root  root  4096 Jun  8 15:07 /etc/grid-security/vomsdir/

$ ls /etc/grid-security/vomsdir
cclcgvomsli01.in2p3.fr.43
lcg-voms.cern.ch.1265
...

On the UI (client), /opt/glite/etc/vomses should contain :

$ ls /opt/glite/etc/vomses
alice-lcg-voms.cern.ch
alice-voms.cern.ch
...

User uses several different VOMS roles

For details, see LFC and DPM internal virtual ids

The same user with two different VOMS roles will be mapped to two different internal virtual gids. To grant privileges to other VOMS roles on given directories/files, use lfc-setacl (see man lfc-setacl).

Help !

For support/help, contact helpdesk@ggusNOPAMSMANDNOSPAMPLEASE.org (remove the NOSPAM !). Your ROC will help you, and contact the appropriate experts if needed.


-- SophieLemaitre - 28 Jul 2006

Edit | Attach | Watch | Print version | History: r1 | Backlinks | Raw View | WYSIWYG | More topic actions
Topic revision: r1 - 2006-07-28 - SophieLemaitre
 
    • Cern Search Icon Cern Search
    • TWiki Search Icon TWiki Search
    • Google Search Icon Google Search

    LCG All webs login

This site is powered by the TWiki collaboration platform Powered by PerlCopyright & 2008-2019 by the contributing authors. All material on this collaboration platform is the property of the contributing authors.
Ideas, requests, problems regarding TWiki? Send feedback