Dear Charles,

I have this errors:

[EMAIL PROTECTED] ~]$ globus-url-copy 
gsiftp://isxp1313c.sims.cranfield.ac.uk//etc/group file:///tmp/ash.test.copy

error: globus_ftp_client: the server responded with an error
530 530-globus_xio: Server side credential failure
530-globus_gsi_gssapi: Error with gss credential handle
530-globus_gsi_gssapi: Error with openssl: Couldn't set the private key to be 
used for the SSL context
530-OpenSSL Error: x509_cmp.c:389: in library: x509 certificate routines, 
function X509_check_private_key: key values mismatch
530 End.

 When I googled I saw where you you suggested running the commands:

openssl x509 -in <cert> -noout -modulus
openssl rsa -in <key> -noout -modulus

and comparing them if they values are the same and doing same for 
hostcert/hostkey

Here are my results:

[EMAIL PROTECTED] ~]$ openssl x509 -in .globus/usercert.pem -noout -modulus
Modulus=E639DB5D5FCB165A8F31EF664C46196B389931C87E868003FE9BBF54FE6FE96E1AAD3B85BE536B48C52C487B36332BC0C3C2C63006C3674CD48AC241D75E6372EA4065E79131DCD476D5C9942E04ABF26C38297C9EB2C835330455672889C86AFAA26EF5F3A5B35779B67AF2A6714A1100FACBB448AE94BF75D5837807B56059
[EMAIL PROTECTED] ~]$ openssl rsa -in .globus/userkey.pem -noout -modulus
Enter pass phrase for .globus/userkey.pem:
Modulus=E639DB5D5FCB165A8F31EF664C46196B389931C87E868003FE9BBF54FE6FE96E1AAD3B85BE536B48C52C487B36332BC0C3C2C63006C3674CD48AC241D75E6372EA4065E79131DCD476D5C9942E04ABF26C38297C9EB2C835330455672889C86AFAA26EF5F3A5B35779B67AF2A6714A1100FACBB448AE94BF75D5837807B56059
[EMAIL PROTECTED] ~]$ openssl x509 -in /etc/grid-security/hostcert.pem -noout 
-modulus
Modulus=BFBA8AA5728C8E761B55FA57705E825229611CCB5B5ABC7F40C404F1221C8FC493873780CE6C792AC918AA6D4C0C5D7801A0EA09A49BDA4262D9AE6702BBCA6A57E49A9E427F0697EB29EB1748A2544FFD4CC793DABB3690D51FDB742B79E6D9FF32DF466E311F4E458BE80A2C116D691CC122022B150D68D9A512840E8F97D5
[EMAIL PROTECTED] ~]$ openssl rsa -in /etc/grid-security/hostkey.pem -noout 
-modulus
Error opening Private Key /etc/grid-security/hostkey.pem
1715:error:0200100D:system library:fopen:Permission 
denied:bss_file.c:276:fopen('/etc/grid-security/hostkey.pem','r')
1715:error:20074002:BIO routines:FILE_CTRL:system lib:bss_file.c:278:
unable to load Private Key
[EMAIL PROTECTED] ~]$

So it means mu usercert and userkey are ok but the hostcert/hostkey are not. I 
made mistakes and deleted my .globus/simpleCA/ or something I can't remember 
then I regenerated it again and I ended up having two certificats in my 
x509up_u502 file. See below:

[EMAIL PROTECTED] ~]$ cat /tmp/x509up_u502
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
-----BEGIN RSA PRIVATE KEY-----
MIIBOgIBAAJBAJdij5v9j49eosLS79eTcBKTEoty6lUV22bjmaPkhSa7Grkrwngz
y4K/X7+iH44vWji5GB9QKVFU2pSHr4afQbsCAwEAAQJAWfIit6FJWfr1o+ImxSSB
81dVLmvB1XoeGRzkHZ/aiS66aUUkmHJAHhEZAVZ/iqgeo9HJjwQZ1xDWOYDAzuYV
SQIhAMnIiAft6PvdnvJ2a49Yp4aKiHyWiZjCIbAsMQrx6wG1AiEAwA9uKwR6a0qg
+2HD4Wo2njzWjJQvN3mwyy6Td5F/G68CIQCJ8rIs2ZUiO0zi7dpy0WUWMbdFlZTT
/kQRsOSGWwUS0QIgPNRmSz+m2laPuC7V0I5IcEPKnEnOzp4/TYsZ79PoU0cCIBur
u0FST2c4/n79rzIYu1kuffYGmCFoO3Fo5rLRSUR0
-----END RSA PRIVATE KEY-----
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
I don't know which one to remove.

Any idea?

Regards
Gokop




       
---------------------------------
Park yourself in front of a world of choices in alternative vehicles.
Visit the Yahoo! Auto Green Center.

Reply via email to