Dear Charles, I have this errors:
[EMAIL PROTECTED] ~]$ globus-url-copy gsiftp://isxp1313c.sims.cranfield.ac.uk//etc/group file:///tmp/ash.test.copy error: globus_ftp_client: the server responded with an error 530 530-globus_xio: Server side credential failure 530-globus_gsi_gssapi: Error with gss credential handle 530-globus_gsi_gssapi: Error with openssl: Couldn't set the private key to be used for the SSL context 530-OpenSSL Error: x509_cmp.c:389: in library: x509 certificate routines, function X509_check_private_key: key values mismatch 530 End. When I googled I saw where you you suggested running the commands: openssl x509 -in <cert> -noout -modulus openssl rsa -in <key> -noout -modulus and comparing them if they values are the same and doing same for hostcert/hostkey Here are my results: [EMAIL PROTECTED] ~]$ openssl x509 -in .globus/usercert.pem -noout -modulus Modulus=E639DB5D5FCB165A8F31EF664C46196B389931C87E868003FE9BBF54FE6FE96E1AAD3B85BE536B48C52C487B36332BC0C3C2C63006C3674CD48AC241D75E6372EA4065E79131DCD476D5C9942E04ABF26C38297C9EB2C835330455672889C86AFAA26EF5F3A5B35779B67AF2A6714A1100FACBB448AE94BF75D5837807B56059 [EMAIL PROTECTED] ~]$ openssl rsa -in .globus/userkey.pem -noout -modulus Enter pass phrase for .globus/userkey.pem: Modulus=E639DB5D5FCB165A8F31EF664C46196B389931C87E868003FE9BBF54FE6FE96E1AAD3B85BE536B48C52C487B36332BC0C3C2C63006C3674CD48AC241D75E6372EA4065E79131DCD476D5C9942E04ABF26C38297C9EB2C835330455672889C86AFAA26EF5F3A5B35779B67AF2A6714A1100FACBB448AE94BF75D5837807B56059 [EMAIL PROTECTED] ~]$ openssl x509 -in /etc/grid-security/hostcert.pem -noout -modulus Modulus=BFBA8AA5728C8E761B55FA57705E825229611CCB5B5ABC7F40C404F1221C8FC493873780CE6C792AC918AA6D4C0C5D7801A0EA09A49BDA4262D9AE6702BBCA6A57E49A9E427F0697EB29EB1748A2544FFD4CC793DABB3690D51FDB742B79E6D9FF32DF466E311F4E458BE80A2C116D691CC122022B150D68D9A512840E8F97D5 [EMAIL PROTECTED] ~]$ openssl rsa -in /etc/grid-security/hostkey.pem -noout -modulus Error opening Private Key /etc/grid-security/hostkey.pem 1715:error:0200100D:system library:fopen:Permission denied:bss_file.c:276:fopen('/etc/grid-security/hostkey.pem','r') 1715:error:20074002:BIO routines:FILE_CTRL:system lib:bss_file.c:278: unable to load Private Key [EMAIL PROTECTED] ~]$ So it means mu usercert and userkey are ok but the hostcert/hostkey are not. I made mistakes and deleted my .globus/simpleCA/ or something I can't remember then I regenerated it again and I ended up having two certificats in my x509up_u502 file. See below: [EMAIL PROTECTED] ~]$ cat /tmp/x509up_u502 -----BEGIN CERTIFICATE----- MIICjTCCAfagAwIBAgIEZa5zbDANBgkqhkiG9w0BAQQFADCBjzENMAsGA1UEChME R3JpZDETMBEGA1UECxMKR2xvYnVzVGVzdDEwMC4GA1UECxMnc2ltcGxlQ0EtaXN4 cDEzMTNjLnNpbXMuY3JhbmZpZWxkLmFjLnVrMR0wGwYDVQQLExRzaW1zLmNyYW5m aWVsZC5hYy51azEYMBYGA1UEAxMPQXNodXRvc2ggVGl3YXJpMB4XDTA3MDYxNjE5 NDgxNVoXDTA3MDYxNzA3NTMxNVowgaQxDTALBgNVBAoTBEdyaWQxEzARBgNVBAsT Ckdsb2J1c1Rlc3QxMDAuBgNVBAsTJ3NpbXBsZUNBLWlzeHAxMzEzYy5zaW1zLmNy YW5maWVsZC5hYy51azEdMBsGA1UECxMUc2ltcy5jcmFuZmllbGQuYWMudWsxGDAW BgNVBAMTD0FzaHV0b3NoIFRpd2FyaTETMBEGA1UEAxMKMTcwNTkzMTYyODBcMA0G CSqGSIb3DQEBAQUAA0sAMEgCQQCXYo+b/Y+PXqLC0u/Xk3ASkxKLcupVFdtm45mj 5IUmuxq5K8J4M8uCv1+/oh+OL1o4uRgfUClRVNqUh6+Gn0G7AgMBAAGjIzAhMB8G CisGAQQBm1ABgV4BAf8EDjAMMAoGCCsGAQUFBxUBMA0GCSqGSIb3DQEBBAUAA4GB AIxlmh3xvohYkqJaMS1V7JKBgMZapyN9VbSmJJMQSJYa6O6glixwBkzsrTJEuIAc 4qBEIxW5azhwOD0aLgoPjpG/xB2v88mizYaq9kI7wnDcR+jy80vRmh5sw/TYkvxT 3n5hMszZUgE3h43BOiQ+ggqTlx3kbGy1JJVDfdS43RHn -----END CERTIFICATE----- -----BEGIN RSA PRIVATE KEY----- MIIBOgIBAAJBAJdij5v9j49eosLS79eTcBKTEoty6lUV22bjmaPkhSa7Grkrwngz y4K/X7+iH44vWji5GB9QKVFU2pSHr4afQbsCAwEAAQJAWfIit6FJWfr1o+ImxSSB 81dVLmvB1XoeGRzkHZ/aiS66aUUkmHJAHhEZAVZ/iqgeo9HJjwQZ1xDWOYDAzuYV SQIhAMnIiAft6PvdnvJ2a49Yp4aKiHyWiZjCIbAsMQrx6wG1AiEAwA9uKwR6a0qg +2HD4Wo2njzWjJQvN3mwyy6Td5F/G68CIQCJ8rIs2ZUiO0zi7dpy0WUWMbdFlZTT /kQRsOSGWwUS0QIgPNRmSz+m2laPuC7V0I5IcEPKnEnOzp4/TYsZ79PoU0cCIBur u0FST2c4/n79rzIYu1kuffYGmCFoO3Fo5rLRSUR0 -----END RSA PRIVATE KEY----- -----BEGIN CERTIFICATE----- MIICjDCCAfWgAwIBAgIBCDANBgkqhkiG9w0BAQQFADBxMQ0wCwYDVQQKEwRHcmlk MRMwEQYDVQQLEwpHbG9idXNUZXN0MTAwLgYDVQQLEydzaW1wbGVDQS1pc3hwMTMx M2Muc2ltcy5jcmFuZmllbGQuYWMudWsxGTAXBgNVBAMTEEdsb2J1cyBTaW1wbGUg Q0EwHhcNMDcwNjE1MTQ0OTA4WhcNMDgwNjE0MTQ0OTA4WjCBjzENMAsGA1UEChME R3JpZDETMBEGA1UECxMKR2xvYnVzVGVzdDEwMC4GA1UECxMnc2ltcGxlQ0EtaXN4 cDEzMTNjLnNpbXMuY3JhbmZpZWxkLmFjLnVrMR0wGwYDVQQLExRzaW1zLmNyYW5m aWVsZC5hYy51azEYMBYGA1UEAxMPQXNodXRvc2ggVGl3YXJpMIGfMA0GCSqGSIb3 DQEBAQUAA4GNADCBiQKBgQDmOdtdX8sWWo8x72ZMRhlrOJkxyH6GgAP+m79U/m/p bhqtO4W+U2tIxSxIezYzK8DDwsYwBsNnTNSKwkHXXmNy6kBl55Ex3NR21cmULgSr 8mw4KXyessg1MwRVZyiJyGr6om7186WzV3m2evKmcUoRAPrLtEiulL911YN4B7Vg WQIDAQABoxUwEzARBglghkgBhvhCAQEEBAMCBPAwDQYJKoZIhvcNAQEEBQADgYEA PdFmiMtuNdd+FA90gD3XWzCzphwE6meX6H6i8ItSxAA5D3JOz6ULt9FliPJHKDCi 28ORzHXZqE+ZZH5YjEysk+UhinMU2PQgIPXQ5RkhoUHA65HsuiEBnFbjsO1dD4Kg /xtfs5X3RIgBxQrtjRHZgNXG1heDGSf+1eBstkf2ApU= -----END CERTIFICATE----- I don't know which one to remove. Any idea? Regards Gokop --------------------------------- Park yourself in front of a world of choices in alternative vehicles. Visit the Yahoo! Auto Green Center.
