Hi, Im getting this error while trying to do globus-url-copy /* error */
[...@comp5 ~]$ globus-url-copy -vb -dbg gsiftp://comp5.vgrid/etc/issue gsiftp://comp4.vgrid/home/tux/abc Source: gsiftp://comp5.vgrid/etc/ Dest: gsiftp://comp4.vgrid/home/tux/ issue -> abc debug: starting to size gsiftp://comp5.vgrid/etc/issue debug: connecting to gsiftp://comp5.vgrid/etc/issue debug: response from gsiftp://comp5.vgrid/etc/issue: 220 comp5.vgrid GridFTP Server 3.15 (gcc32, 1222656151-78) [Globus Toolkit 4.2.1] ready. debug: authenticating with gsiftp://comp5.vgrid/etc/issue debug: fault on connection to gsiftp://comp5.vgrid/etc/issue: globus_ftp_control: gss_init_sec_context failed debug: operation complete debug: starting to transfer gsiftp://comp5.vgrid/etc/issue to gsiftp://comp4.vgrid/home/tux/abc debug: connecting to gsiftp://comp4.vgrid/home/tux/abc debug: response from gsiftp://comp4.vgrid/home/tux/abc: 220 comp4.vgrid GridFTP Server 3.15 (gcc32, 1222656151-78) [Globus Toolkit 4.2.1] ready. debug: authenticating with gsiftp://comp4.vgrid/home/tux/abc debug: response from gsiftp://comp4.vgrid/home/tux/abc: 230 User tux logged in. debug: sending command to gsiftp://comp4.vgrid/home/tux/abc: SITE HELP debug: response from gsiftp://comp4.vgrid/home/tux/abc: 214-The following commands are recognized: ALLO APPE REST CWD CDUP DCAU EPSV FEAT ERET MDTM STAT ESTO HELP LIST MODE NLST MLSD PASV RNFR MLST NOOP OPTS STOR PASS PBSZ PORT PROT SITE EPRT RETR SPOR SCKS TREV PWD QUIT SBUF SIZE SPAS STRU SYST RNTO TYPE USER LANG MKD RMD DELE CKSM 214 End debug: sending command to gsiftp://comp4.vgrid/home/tux/abc: FEAT debug: response from gsiftp://comp4.vgrid/home/tux/abc: 211-Extensions supported AUTHZ_ASSERT UTF8 LANG EN DCAU PARALLEL SIZE MLST Type*;Size*;Modify*;Perm*;Charset;UNIX.mode*;UNIX.owner*;UNIX.group*;Unique*;UNIX.slink*; ERET ESTO SPAS SPOR REST STREAM MDTM PASV AllowDelayed; 211 End. debug: sending command to gsiftp://comp4.vgrid/home/tux/abc: TYPE I debug: response from gsiftp://comp4.vgrid/home/tux/abc: 200 Type set to I. debug: sending command to gsiftp://comp4.vgrid/home/tux/abc: MODE E debug: response from gsiftp://comp4.vgrid/home/tux/abc: 200 Mode set to E. debug: sending command to gsiftp://comp4.vgrid/home/tux/abc: PBSZ 1048576 debug: response from gsiftp://comp4.vgrid/home/tux/abc: 200 PBSZ=1048576 debug: sending command to gsiftp://comp4.vgrid/home/tux/abc: PASV debug: response from gsiftp://comp4.vgrid/home/tux/abc: 227 Entering Passive Mode (10,1,40,5,226,63) debug: sending command to gsiftp://comp4.vgrid/home/tux/abc: STOR /home/tux/abc debug: connecting to gsiftp://comp5.vgrid/etc/issue debug: response from gsiftp://comp5.vgrid/etc/issue: 220 comp5.vgrid GridFTP Server 3.15 (gcc32, 1222656151-78) [Globus Toolkit 4.2.1] ready. debug: authenticating with gsiftp://comp5.vgrid/etc/issue debug: fault on connection to gsiftp://comp5.vgrid/etc/issue: globus_ftp_control: gss_init_sec_context failed debug: operation complete error: globus_ftp_control: gss_init_sec_context failed OpenSSL Error: a_verify.c:168: in library: asn1 encoding routines, function ASN1_verify: EVP lib OpenSSL Error: rsa_eay.c:624: in library: rsa routines, function RSA_EAY_PUBLIC_DECRYPT: padding check failed OpenSSL Error: rsa_pk1.c:100: in library: rsa routines, function RSA_padding_check_PKCS1_type_1: block type is not 01 [...@comp5 ~]$ // CONFIG FILES 3 Pentium 4 computers having 512 MB of RAM, running Fedora 8. globus-url-copy -version = 4.14 globus-url-copy -versions globus-url-copy: 4.14 (1222958031-78) globus_ftp_client_restart_plugin: 3.14 (1222919208-78) globus_ftp_client_debug_plugin: 3.14 (1222919208-78) globus_ftp_client_perf_plugin: 3.14 (1222919208-78) globus_ftp_client_throughput_plugin: 3.14 (1222919208-78) globus_xio_popen: 0.2 (1137650252-1) globus_ftp_control: 2.10 (1222919209-78) globus_ftp_client: 3.14 (1222919208-78) globus_xio_gsi: 0.6 (1147293372-1) globus_xio_tcp: 2.7 (1222409092-78) globus_xio_system_select: 2.7 (1222409092-78) globus_xio_file: 2.7 (1222409092-78) globus_xio: 2.7 (1222409092-78) globus_io: 6.3 (1205348470-1) globus_gsi_callback_module: 1.10 (1222462691-78) globus_credential: 2.2 (1221137572-78) globus_gsi_proxy: 3.4 (1221491107-78) globus_gsi_openssl_error: 0.14 (1187713911-1) globus_openssl: 0.6 (1137650183-1) globus_gsi_gssapi: 5.9 (1222287995-78) globus_sysconfig: 2.2 (1221496615-78) globus_callout_module: 0.7 (1137650048-1) globus_gss_assist: 4.0 (1221495201-78) globus_extension_module: 10.2 (1222723249-78) globus_callback_nonthreaded: 10.2 (1222723249-78) globus_object: 10.2 (1222723249-78) globus_error: 10.2 (1222723249-78) globus_common: 10.2 (1222723249-78) globus_gass_transfer: 3.4 (1222367910-78) globus_gass_copy: 4.14 (1222958031-78) globus_thread_common: 10.2 (1222723249-78) globus_thread_none: 10.2 (1222723249-78) [...@comp5 ~]$ telnet localhost 2811 Trying 127.0.0.1... Connected to localhost. Escape character is '^]'. 220 comp5.vgrid GridFTP Server 3.15 (gcc32, 1222656151-78) [Globus Toolkit 4.2.1] ready. The gridftp runs in xinetd the lines in /etc/services are: gsiftp 2811/tcp the contents of /etc/xinetd.d/grid-ftp are: service gsiftp { instances = 1000 socket_type = stream wait = no user = root env += GRIDMAP=/etc/grid-security/grid-mapfile env += GLOBUS_LOCATION=/usr/local/globus env += LD_LIBRARY_PATH=/usr/local/globus/lib server = /usr/local/globus/sbin/globus-gridftp-server server_args = inetd loglevel "ERROR,WARN,INFO,DUMP,ALL" logfile /var/log/gridftp port = 2811 log_on_success += DURATION USERID log_on_failure += USERID nice = 10 disable = no } The SimpleCA is setup on comp4.vgrid using the nonroot option. comp4.vgrid certificates of the CA are located at /usr/local/globus/share/certificates [...@comp4 certificates]$ ls -la total 36 drwxrwxrwx 3 globus globus 4096 2009-03-06 16:20 . drwxrwxrwx 41 globus globus 4096 2008-10-21 01:56 .. -rw-r--r-- 1 globus globus 928 2009-02-25 12:32 2539e34b.0 -rw-r--r-- 1 globus globus 1339 2009-02-25 12:32 2539e34b.signing_policy -rw------- 1 globus globus 2150 2009-03-06 16:20 containerproxy.pem -rw-r--r-- 1 globus globus 2710 2009-02-25 12:32 globus-host-ssl.conf.2539e34b -rw-r--r-- 1 globus globus 2815 2009-02-25 12:32 globus-user-ssl.conf.2539e34b -rw-r--r-- 1 globus globus 1359 2009-02-25 12:32 grid-security.conf.2539e34b drwxrwxrwx 2 globus globus 4096 2009-02-28 12:41 var [...@comp4 certificates]$ Host certifictes have been generated and put in /etc/grid-security/ Container certificated owned by user 'globus' have been put in /etc/grid-security/ [...@comp4 grid-security]$ ls -la total 48 drwxr-xr-x 3 globus globus 4096 2009-02-28 12:40 . drwxr-xr-x 115 root root 12288 2009-03-07 14:05 .. -rw-r--r-- 1 globus globus 2663 2009-02-25 12:39 containercert.pem -r-------- 1 globus globus 891 2009-02-25 12:39 containerkey.pem -rw------- 1 globus globus 2150 2009-02-28 12:40 containerproxy.pem -rw-rw-r-- 1 globus globus 69 2009-02-28 12:32 grid-mapfile -rw-r--r-- 1 root root 2663 2009-02-25 12:36 hostcert.pem -r-------- 1 root root 891 2009-02-25 12:34 hostkey.pem drwxrwxr-x 3 globus globus 4096 2009-03-07 12:00 var [...@comp4 grid-security]$ The contents of the grid-mapfile located in /etc/grid-security/grid-mapfile are "/O=Grid/OU=GlobusTest/OU=simpleCA-comp4.vgrid/OU=vgrid/CN=tux" tux comp5.vgrid The simpleCA installation package globus_simple_ca_2539e34b_setup-0.20.tar.gz has been run on comp5.vgrid. [...@comp5 certificates]$ pwd /usr/local/globus/share/certificates [...@comp5 certificates]$ ls -la total 28 drwxrwxrwx 2 globus globus 4096 2009-02-25 13:28 . drwxrwxr-x 42 globus globus 4096 2008-02-06 02:28 .. -rw-r--r-- 1 root root 928 2009-02-25 13:28 2539e34b.0 -rw-r--r-- 1 root root 1339 2009-02-25 13:28 2539e34b.signing_policy -rw-r--r-- 1 root root 2710 2009-02-25 13:28 globus-host-ssl.conf.2539e34b -rw-r--r-- 1 root root 2815 2009-02-25 13:28 globus-user-ssl.conf.2539e34b -rw-r--r-- 1 root root 1359 2009-02-25 13:28 grid-security.conf.2539e34b [...@comp5 certificates]$ User certificates have been generated for the user 'tux' and have been signed using grid-ca-sign on comp4.vgrid. The user certificates are located in /home/tux/.globus/usercert.pem and /home/tux/.globus/userkey.pem [...@comp5 grid-security]$ ls -la total 700 drwxr-xr-x 3 root root 4096 2009-03-07 14:33 . drwxr-xr-x 114 root root 12288 2009-03-07 14:56 .. drwxr-xr-x 2 root root 4096 2009-03-07 14:32 certificates -rw------- 1 globus globus 867 2009-02-13 12:59 containercert.pem -rw------- 1 globus globus 887 2009-02-13 12:59 containerkey.pem -rw-r--r-- 1 globus globus 70 2009-02-28 11:15 grid-mapfile -rw-r--r-- 1 globus globus 0 2009-02-13 13:03 hostcert -r--r--r-- 1 globus globus 867 2009-02-13 12:58 hostcert.pem -rw------- 1 globus globus 887 2009-03-07 14:30 hostkey.pem -rw-r--r-- 1 root root 663044 2005-12-29 05:04 lame-3.96.1-0.lvn.4.4.i386.rpm -rw-r--r-- 1 root root 443 2009-02-21 12:31 sudo The contents of /etc/grid-security/grid-mapfile in comp5.vgrid are: "/O=Grid/OU=GlobusTest/OU=simpleCA-comp4.vgrid/OU=vgrid/CN=tux" tux Command executed on comp5.vgrid source /usr/local/globus/etc/globus-user-env.sh [...@comp5 local]$ grid-proxy-init Your identity: /O=Grid/OU=GlobusTest/OU=simpleCA-comp4.vgrid/OU=vgrid/CN=tux Enter GRID pass phrase for this identity: Creating proxy ............................... Done Your proxy is valid until: Sun Mar 8 00:52:11 2009 /* THIS IS THE ERROR WHICH IS OCCURRING */ [...@comp5 ~]$ globus-url-copy -vb -dbg gsiftp://comp5.vgrid/etc/issue gsiftp://comp4.vgrid/home/tux/abc Source: gsiftp://comp5.vgrid/etc/ Dest: gsiftp://comp4.vgrid/home/tux/ issue -> abc debug: starting to size gsiftp://comp5.vgrid/etc/issue debug: connecting to gsiftp://comp5.vgrid/etc/issue debug: response from gsiftp://comp5.vgrid/etc/issue: 220 comp5.vgrid GridFTP Server 3.15 (gcc32, 1222656151-78) [Globus Toolkit 4.2.1] ready. debug: authenticating with gsiftp://comp5.vgrid/etc/issue debug: fault on connection to gsiftp://comp5.vgrid/etc/issue: globus_ftp_control: gss_init_sec_context failed debug: operation complete debug: starting to transfer gsiftp://comp5.vgrid/etc/issue to gsiftp://comp4.vgrid/home/tux/abc debug: connecting to gsiftp://comp4.vgrid/home/tux/abc debug: response from gsiftp://comp4.vgrid/home/tux/abc: 220 comp4.vgrid GridFTP Server 3.15 (gcc32, 1222656151-78) [Globus Toolkit 4.2.1] ready. debug: authenticating with gsiftp://comp4.vgrid/home/tux/abc debug: response from gsiftp://comp4.vgrid/home/tux/abc: 230 User tux logged in. debug: sending command to gsiftp://comp4.vgrid/home/tux/abc: SITE HELP debug: response from gsiftp://comp4.vgrid/home/tux/abc: 214-The following commands are recognized: ALLO APPE REST CWD CDUP DCAU EPSV FEAT ERET MDTM STAT ESTO HELP LIST MODE NLST MLSD PASV RNFR MLST NOOP OPTS STOR PASS PBSZ PORT PROT SITE EPRT RETR SPOR SCKS TREV PWD QUIT SBUF SIZE SPAS STRU SYST RNTO TYPE USER LANG MKD RMD DELE CKSM 214 End debug: sending command to gsiftp://comp4.vgrid/home/tux/abc: FEAT debug: response from gsiftp://comp4.vgrid/home/tux/abc: 211-Extensions supported AUTHZ_ASSERT UTF8 LANG EN DCAU PARALLEL SIZE MLST Type*;Size*;Modify*;Perm*;Charset;UNIX.mode*;UNIX.owner*;UNIX.group*;Unique*;UNIX.slink*; ERET ESTO SPAS SPOR REST STREAM MDTM PASV AllowDelayed; 211 End. debug: sending command to gsiftp://comp4.vgrid/home/tux/abc: TYPE I debug: response from gsiftp://comp4.vgrid/home/tux/abc: 200 Type set to I. debug: sending command to gsiftp://comp4.vgrid/home/tux/abc: MODE E debug: response from gsiftp://comp4.vgrid/home/tux/abc: 200 Mode set to E. debug: sending command to gsiftp://comp4.vgrid/home/tux/abc: PBSZ 1048576 debug: response from gsiftp://comp4.vgrid/home/tux/abc: 200 PBSZ=1048576 debug: sending command to gsiftp://comp4.vgrid/home/tux/abc: PASV debug: response from gsiftp://comp4.vgrid/home/tux/abc: 227 Entering Passive Mode (10,1,40,5,226,63) debug: sending command to gsiftp://comp4.vgrid/home/tux/abc: STOR /home/tux/abc debug: connecting to gsiftp://comp5.vgrid/etc/issue debug: response from gsiftp://comp5.vgrid/etc/issue: 220 comp5.vgrid GridFTP Server 3.15 (gcc32, 1222656151-78) [Globus Toolkit 4.2.1] ready. debug: authenticating with gsiftp://comp5.vgrid/etc/issue debug: fault on connection to gsiftp://comp5.vgrid/etc/issue: globus_ftp_control: gss_init_sec_context failed debug: operation complete error: globus_ftp_control: gss_init_sec_context failed OpenSSL Error: a_verify.c:168: in library: asn1 encoding routines, function ASN1_verify: EVP lib OpenSSL Error: rsa_eay.c:624: in library: rsa routines, function RSA_EAY_PUBLIC_DECRYPT: padding check failed OpenSSL Error: rsa_pk1.c:100: in library: rsa routines, function RSA_padding_check_PKCS1_type_1: block type is not 01 [...@comp5 ~]$ Please help. This problem has been troubling me since two weeks.
