GS-CA deployments and GS-ST - was Re: [gridshib-user] Problem with GridShibCA 0.6.0

Von Welch vwelch at uiuc.edu
Wed Mar 26 10:31:54 CDT 2008


Seems like there is interest in having the SAML-Tools on the 
production (0.5.1 currently) deployment as well as the head of cvs 
version (gridshib-ca-test). I'm planning on reconfiguring the 
production deployment to use them when I get a few minutes.

Basically I'm proposing making the use of the SAML-Tools ubiquitous 
across the GS-CA deployments on computer barring objection.

Also, right now, the GS-CA isn't putting any attributes into the 
SAML, I'm thinking of adding one or two contrived group memberships, 
plus the client IP, to make the SAML more interesting and useful for 
debugging GS4GT deployments. Again, any comments welcome.

Von

Tom Scavo wrote:
> On Wed, Mar 26, 2008 at 9:59 AM, Giulio Galiero <giulio.galiero at eng.it> wrote:
>> anyway, this morning I could successfully get EEC from GS-CA 0.6.0 at
>> https://computer.ncsa.uiuc.edu/gridshib-ca-test/. After logging in via
>> ProtectNetwork I could retrieve the certificate (the GS-CA shows the
>> 0.5.0-preview version, is this ok?). The gridshibecho client works fine with
>> a correct output.
> 
> Great!  I don't know what version of the GridShib CA this is, but Von
> said (private communication) that the current version of the GridShib
> CA integrated with the GridShib SAML Tools is always located at
> 
> https://computer.ncsa.uiuc.edu/gridshib-ca-test/
> 
> so that is the link I've inserted into the Quick Start.
> 
>> I am going on with the QuickStart Guide and let you know how it goes.
> 
> Excellent!  Please don't hesitate to post here if you have problems or
> encounter any issues.
> 
> Cheers,
> Tom
> 




More information about the gridshib-user mailing list