Hum.. still don't get it :( On my "Globus" machine, i have 2 accounts: root and globus. A client (username=bob) wants to launch job/transfer on that Globus remote machine.
So, may i map this client's DN with the local "globus" account ?
I think thats not a solution. And if at all it is its kinda dirty hack. Any useful link about this delegating stuff ? I guess your best bet is to delegate the credentials of user bob to globus. Link: http://www.globus.org/toolkit/docs/4.0/security/delegation/
