Hornoy Francois wrote:
Hello,
Something i have not really understood yet: i'm following the tutorial on the
GlobusConsortium website.
If a client (let's say "bob") wants to run a job on a Globus remote machine,
there must be a "bob" UNIX account on the Globus remote machine ?
nopes, as long as i understand, the globus machine's grid-mapfile must
map that users' DN to his/her accountname and a separate account on
globus machine is not required. For those tasks that needs
authentication the client must delegate his/her credentials to globus
user to perform them on clients behalf.
Or shall i map every user certificate subjects in the grid-mapfile to the local
user "globus" ?
delegation is a cleaner solution.
Thanks for helping,
Bye, Francois.