Tuesday, September 16, 2008

x509 Issue

  • Exported CDC private key and certificates to the testing node.
  • Tested the certificates using the issuer_hash
  • Created a new usercert.pem file from a certificate that used the "strong protection" option
  • Removed the Root certificate from the TRUSTED_CA and tested using the Intermediate certificate
  • Named Intermediate certificate based on the issuer_hash

Results:

ERROR: Couldn't verify the authenticity of the user's credential to generate a proxy from.

grid_proxy_init.c:1070:globus_gsi_cred_handle.c:globus_gsi_cred_verify_cert_chain:1733:
Error verifying credential: Failed to verify credential
globus_gsi_callback.c:globus_i_gsi_callback_create_proxy_callback:442:
Could not verify credential
globus_gsi_callback.c:globus_i_gsi_callback_cred_verify:681:
Can't get the local trusted CA certificate: Cannot find issuer certificate for local credential with subject: DATA-REMOVED-BY-DAN

No comments: