Print

Print


Hi.

When using certiifcates with xrootd, it apparently checks to have exactly mode 644 / 400.
Please stop doing such crappy things... people don't want to make copies of hostcerts for each service they run, and whenever the certs need to be exchanged, go through all these locations.
It's common use within the grid to have /etc/grid-security/hostcert|key.pem and it should be possible to simply use them.

When you insist though on the above nodes, using ACLs to allow the xrootd user reading the key becomes impossible.

Cheers,
Chris.


Reply to this email directly or view it on GitHub.



Use REPLY-ALL to reply to list

To unsubscribe from the XROOTD-DEV list, click the following link:
https://listserv.slac.stanford.edu/cgi-bin/wa?SUBED1=XROOTD-DEV&A=1