TWiki> UCSDTier2 Web>OSGHostCertGeneration (revision 1)EditAttach

How to Generate an OSG Certificate with the VDT and get it Signed



Document describing how to generate and authorize a Grid certificate for a service host.

Note: This requires you be able to directly authorize a host cert

--++ Generating The Certificate

Setup the environment


Setup the cert request

Reading from /data/vdt/globus/TRUSTED_CA
Using hash: 1c3f2ca8
Setting up grid-cert-request
Running grid-security-config...

Before you use the Grid Security Infrastructure, you should first
define the DN (distinguished name) that should be used for your
organization's X509 certificates.  If you do not define a DN,
a default DN will be assigned to you.

For some questions, a default response is given in [].
Pressing RETURN in response to such a question will enable the default.
This script will overwrite the file --



(1) Base DN for user certificates
         [ OU=People,DC=doegrids,DC=org ]
(2) Base DN for host certificates
         [ OU=Services,DC=doegrids,DC=org ]

(q) save, configure the GSI and Quit
(c) Cancel (exit without saving or configuring)
(h) Help

Successfully created cert request configuration files in:

Generate the host certificate

-- TerrenceMartin - 20 Nov 2006

Edit | Attach | Print version | History: r2 < r1 | Backlinks | Raw View | Raw edit | More topic actions...
Topic revision: r1 - 2006/11/20 - 19:36:48 - TerrenceMartin
This site is powered by the TWiki collaboration platformCopyright © by the contributing authors. All material on this collaboration platform is the property of the contributing authors.
Ideas, requests, problems regarding TWiki? Send feedback