Print

Print


[root@pool09 ~]# cat /etc/xrootd/Authfile 
t writecmsdata /store/backfill/          a  \
               /store/data/              a  \
               /store/generator/         a  \
               /store/group/             a  \
               /store/hidata/            a  \
               /store/himc/              a  \
               /store/mc/                a  \
               /store/PhEDEx_LoadTest07/ a  \
               /store/relval/            a  \
               /store/results/           a  \
               /store/temp/              a  \
               /store/unmerged/          a  \
               /store/user/              a

t readcmsdata  /store/unmerged/          a  \
                        /store/                   lr

t writecmsuser /store/temp/              a  \
                        /store/user/              a

# CMS users have full access to their own directory, and read for CMS
# While xrootd allows the user to *attempt* any operation - even in other user's
# home directories - the underlying filesystem also has its internal permissions and will further
# limit things.

g /cms            readcmsdata writecmsuser
g /escms          readcmsdata writecmsdata
g /cms/GGUSExpert readcmsdata writecmsdata
g /cms/TEAM       readcmsdata writecmsdata
g /cms/ALARM      readcmsdata writecmsdata

this works fine for xrootd but not for http I have tried to use (o cms or g cms ) with no luck

User is always mapped to "logcise":

http Protocol 'gsi'
http Name 'locsices'
http Host '[::ffff:10.10.150.1]'
http Vorg 'cms cms'
http Role 'NULL NULL'
http Grps '/cms /cms/escms'

Regards, I



-- 
You are receiving this because you commented.
Reply to this email directly or view it on GitHub:
https://github.com/xrootd/xrootd/issues/1460#issuecomment-851926483

########################################################################
Use REPLY-ALL to reply to list

To unsubscribe from the XROOTD-DEV list, click the following link:
https://listserv.slac.stanford.edu/cgi-bin/wa?SUBED1=XROOTD-DEV&A=1