If I do the same openssl s_client command to voms.fnal.gov:15001 from el6, it succeeds, but voms.dosar.org:15000 says CONNECTED(00000003) 139824908924744:error:14077410:SSL routines:SSL23_GET_SERVER_HELLO:sslv3 alert handshake failure:s23_clnt.c:744: --- no peer certificate available --- No client I was told before that cvmfs is reliable but since I experienced the problems I switched to local. https://found.cern.ch/found-cgi/exp?exp=ATLAS&last=shamim&first=&email=&pemail=&off=&tel= But when I enter my information on Phase I page I get the error message Registration (Phase I) A person with email [email protected] If any of this information changes after you have your certificate you should notify OSG (and probably VO) of the changes. have a peek at these guys

The reason I mention this is, if you do the proper thing now and request a service cert (and, I don't mean to discourage doing that, but just a heads-up if

voms /etc/voms/VO_NAME/voms.conf voms-admin /etc/voms-admin/VO_NAME/voms-admin-dosar.xml /etc/voms-admin/VO_NAME/voms.service.properties MYSQL /etc/my.cnf Tomcat Configuration: EL5: /etc/tomcat5/ ELG6: /etc/tomcat6/ Thanks! What certs should be in /etc/ssl/certs? To verify your current stage or status, under Member Info, click Check Authorization Status, and then click Submit. ~John -- by jd at Tue May 21 21:37:45 UTC 2013 GOCTX Source:

  • On parret I can create a grid proxy (with the same, latest, LHCBDIRAC version, v7r15p15), but unfortunately ganga requires me to submit these particular slc6 jobs from an slc6 machine...
  • More worrying is that the script kept running - it's set to time out after 60 minutes.
  • Sorry I didn't catch that earlier, but I wasn't the one who replaced them. :) Since I don't know where the original key is kept (or maybe it has been accidentally
  • Creating temporary proxy ..................................................................
  • On the status page I see First name Last name Status Phase Admin DN Admin CA Authorization status Mansoora Shamim Approved Representative /DC=org/DC=doegrids/OU=People/CN=John R.
  • About This Document Know your Responsibilities Getting your Certificate PKCS12 (.p12) vs PEM format Revoke your Certificate if Compromised References Comments NOTE For instructions on getting service and host certificates, you're

Please advise. Please let me know if I can assist. VinceJan 27, 2015 06:29 PM UTCHi. Reason Error During Ssl Handshake With Remote Server VinceJul 8, 2015 03:47 PM UTC by Vince NealAndrew/Horst, Can you take a look at the VOMS portal when you get a moment?

They both fail, but against the OSGEDU server, I get a little further before it exits: ---- [[email protected] ~]$ openssl s_client -connect voms.dosar.org:8443 CONNECTED(00000003) 3144:error:14077410:SSL routines:SSL23_GET_SERVER_HELLO:sslv3 alert handshake failure:s23_clnt.c:586: ---- [[email protected] Error During Ssl Handshake With Remote Server Returned By But I can`t submit jibs to grid. That's now the same SSL handshake error again as it was before: ---- Error: Error during SSL handshake:error:14094410:SSL routines:SSL3_READ_BYTES:sslv3 alert handshake failure:s3_pkt.c:1259SSL alert number 40 sslv3 alert handshake failureSSL alert number why not try these out If so, please do.

Will observe next scheduled run in 43 minutes.Sep 5, 2015 07:44 PM UTC by Scott Teigenext update runs at 16:20, will check then. /cvmfs/oasis.opensciencegrid.org/mis/certificates shows content timestamped at the time of The server log file contains the following lines: Wed Jan 17 12:21:44 2007:lxb2176.cern.ch:vomsd(9318):ERROR:REQUEST:AcceptGSIAuthentication (/home/glbuild/GLITE_3_0_3_RC1/org.glite.security.voms/src/socklib/Server.cpp:262):Failed to establish security context (accept):.GSS Major Status: Authentication Failed.GSS Minor Status Error Chain: ..accept_sec_context.c:170: gss_accept_sec_context: SSLv3 handshake Please note, this addresses updating of the CRLs. I hope the above information is sufficient for you to choose which you prefer and understand there may be external constraints forcing you to choose the /cvmfs option.

Error During Ssl Handshake With Remote Server Returned By

Software Support, Can you perhaps help with this issue? -KyleAug 4, 2015 06:22 PM UTC by Dave DykstraI don't think we have the voms experts copied on this ticket. website here I am now using the DigeCert as primary and was able to run dq2-ls command. Error During Ssl Handshake Voms I'm not sure where to look next. Error During Ssl Handshake With Remote Server Returned By Apache Or is vo.racf.bnl.gov not even supposed to be active anymore, and should be removed from /etc/vomses?

All OSG user tools works with both formats. http://invictanetworks.net/error-during/error-during-websocket-handshake-unexpected-response-code-400.html I verified that the vomses file is okay, as well as our edg-mkgridmap.conf -- although I don't think that matters right now, since I don't believe that's involved in getting me We'll do an analysis of the problem on Tuesday.Sep 8, 2015 01:03 PM UTC by Scott TeigeI ran the updater manually through the weekend. Thanks, VinceJan 30, 2015 02:10 PM UTC by [email protected] Vince, I am the contact for DOSAR, however I'm inexperienced with VOMS software and SSL. Error During Ssl Handshake With Remote Server Proxy

If I can assist please let me know. Thanks -Serguei by /DC=com/DC=DigiCert-Grid/O=Open Science Grid/OU=People/CN=Serguei Fedorov 787Sep 8, 2015 03:50 PM UTC by Matyas SelmeciThe existence of the lockfile is perfectly normal -- the script uses flock to actually lock/unlock Cheers Mansoora voms-proxy-init -voms atlas Enter GRID pass phrase: Your identity: /DC=com/DC=DigiCert-Grid/O=Open Science Grid/OU=People/CN=Mansoora Shamim 1332 Creating temporary proxy ................................................................................................. http://invictanetworks.net/error-during/error-during-send-request-during-first-handshake.html By the way: the web interface, https://voms.dosar.org:8443/voms/dosar now seems to be working again, which didn't a few days ago, it gave me some apache error.

All material on this collaboration platform is the property of the contributing authors. Creating temporary proxy ................................................. Creating temporary proxy to /tmp/tmp_x509up_u0_29211 ............................................................++++++ ........++++++ Done Contacting lcg-voms2.cern.ch:15002 [/DC=ch/DC=cern/OU=computers/CN=lcg-voms2.cern.ch] "cms" Failed Error: Error during SSL handshake:error:80066405:lib(128):verify_callback:outdated CRL found, revoking all certs till you get new CRL:sslutils.c:2115 outdated CRL found,

Thank you, VinceJan 14, 2015 11:04 PM UTCThis is what I get: voms-proxy-init --version voms-proxy-init Version: 2.0.9 Compiled: Nov 8 2012 14:02:33 by /DC=com/DC=DigiCert-Grid/O=Open Science Grid/OU=People/CN=Ricardo Manuel Ramos dos Santos Neves

I don't think attachments make it through the ticketing system, though, so if you can't cut and paste, could you please go to https://ticket.opensciencegrid.org/23879 and attach the pictures there? That would cause obvious expiration errors, wouldn't you think? https://twiki.grid.iu.edu/bin/view/Documentation/Release3/InstallVoms Please let me know if I can assist. I did follow all the steps > but I checked today and am still not able to do even dq2-ls commands. > It gives the same error.

Please first register at CERN as a member of ATLAS experiment! Groups and Group Roles . It appears the Membership Services (VOMS) URL is unresponsive (or maybe incorrect?) https://voms.dosar.org:8443/voms/dosar/services/VOMSAdmin https://oim.grid.iu.edu/oim/voedit?id=6 Thanks! news Thanks!

Done Contacting lxb2176.cern.ch:15002 [/C=CH/O=CERN/OU=GRID/CN=host/lxb2176.cern.ch] "dteam" Failed Error: dteam: User unknown to this VO. globus_gss_assist token :-1: read failure: unknown None of the contacted servers for dteam were capable of returning a valid AC for the user. None of the contacted servers for atlas were capable of returning a valid AC for the user. On Tue, Jun 30, 2015 at 15:43 Open Science Grid FootPrints < [email protected]> wrote: > [Duplicate message snipped]Jun 30, 2015 08:42 PM UTC by Kyle GrossAndrew, Have you had a chance

Did you already look there? Do I need to start over again from phase I? The CRLs are accessible via three redundant cvmfs replica located at IU, BNL and FNAL.