The initial problem was that the HTTP authentication part was not able to properly match a given certificate (it could also be a proxy certificate or multi-delegated proxy certificate) to the information from a gridmap-file and therefore extract the proper local user identity stored in the gridmap-file. Due to this, jobs submitted for example by ATLAS people through FTS that uses multi-delegated proxy certificates (NOTE: through HTTTP) always fail since they don't get mapped to the correct local identity. I agree this is not ideal, but I couldn't see a different way around it. Also the method were this matching is done (GetVOMSData) is a bit misleading and it doesn't necessarily have anything to do with VOMS.

Nevertheless, if there is any other way around this, by using any other piece of code, I am happy to try it out, but for the moment this is blocking ATLAS to submit FTS jobs using HTTP.


You are receiving this because you are subscribed to this thread.
Reply to this email directly, view it on GitHub, or unsubscribe.

[ { "@context": "http://schema.org", "@type": "EmailMessage", "potentialAction": { "@type": "ViewAction", "target": "https://github.com/xrootd/xrootd/pull/1224#issuecomment-651600517", "url": "https://github.com/xrootd/xrootd/pull/1224#issuecomment-651600517", "name": "View Pull Request" }, "description": "View this Pull Request on GitHub", "publisher": { "@type": "Organization", "name": "GitHub", "url": "https://github.com" } } ]

Use REPLY-ALL to reply to list

To unsubscribe from the XROOTD-DEV list, click the following link:
https://listserv.slac.stanford.edu/cgi-bin/wa?SUBED1=XROOTD-DEV&A=1