Certificate to UI: Difference between revisions

From T2B Wiki
Jump to navigation Jump to search
No edit summary
No edit summary
Line 4: Line 4:
  scp cert.p12 $USER@m0.iihe.ac.be:.globus/cert.p12
  scp cert.p12 $USER@m0.iihe.ac.be:.globus/cert.p12
- Change it to private/public keys with openssl (do not replace <user> with yours, the key and cert '''must''' be named ''userkey'' & ''usercert'')
- Change it to private/public keys with openssl (do not replace <user> with yours, the key and cert '''must''' be named ''userkey'' & ''usercert'')
  openssl pkcs12 -nocerts -in cert.p12 -out ~/.globus/userkey.pem
  openssl pkcs12 -nocerts -in ~/.globus/cert.p12 -out ~/.globus/userkey.pem
  openssl pkcs12 -clcerts -nokeys -in cert.p12 -out ~/.globus/usercert.pem
  openssl pkcs12 -clcerts -nokeys -in ~/.globus/cert.p12 -out ~/.globus/usercert.pem
- Make sure they have the correct permissions
- Make sure they have the correct permissions
  chmod 400 ~/.globus/userkey.pem
  chmod 400 ~/.globus/userkey.pem
  chmod 644 ~/.globus/usercert.pem
  chmod 644 ~/.globus/usercert.pem

Revision as of 13:38, 20 September 2021

- Create a .globus directory in your home directory on the mX machines

mkdir .globus

- Copy the certificate in *.p12 format to any mX machine

scp cert.p12 $USER@m0.iihe.ac.be:.globus/cert.p12

- Change it to private/public keys with openssl (do not replace <user> with yours, the key and cert must be named userkey & usercert)

openssl pkcs12 -nocerts -in ~/.globus/cert.p12 -out ~/.globus/userkey.pem
openssl pkcs12 -clcerts -nokeys -in ~/.globus/cert.p12 -out ~/.globus/usercert.pem

- Make sure they have the correct permissions

chmod 400 ~/.globus/userkey.pem
chmod 644 ~/.globus/usercert.pem