Hornoy Francois wrote:
Hello,
 Something i have not really understood yet: i'm following the tutorial on the
GlobusConsortium website.
 If a client (let's say "bob") wants to run a job on a Globus remote machine,
there must be a "bob" UNIX account on the Globus remote machine ?
nopes, as long as i understand, the globus machine's grid-mapfile must map that users' DN to his/her accountname and a separate account on globus machine is not required. For those tasks that needs authentication the client must delegate his/her credentials to globus user to perform them on clients behalf.
 Or shall i map every user certificate subjects in the grid-mapfile to the local
user "globus" ?
delegation is a cleaner solution.
Thanks for helping,
  Bye, Francois.


Reply via email to