Dirac GridPP DIRAC Tokens

From GridPP Wiki
Revision as of 14:13, 12 January 2024 by Daniela Bauer 7cecb7c591 (Talk | contribs)

(diff) ← Older revision | Latest revision (diff) | Newer revision → (diff)
Jump to: navigation, search

Enabling Tokens for VOs supported on the GridPP DIRAC instance

We are rolling out pilot submissions using token for the pilots on the GridPP DIRAC instance. Users are still expected to use certificates. VOs that are currently supported on the GridPP voms servers will use an IAM instance co-located with the DIRAC instance. VOs not supported by the GridPP voms servers have been advised to commission their own IAM server. For all practical purposes this mainly concerns the Moedal VO who has been told that it will take CERN until "early 2024" to deploy an IAM server for them: CERN ticket.


Notes on ARC6

Courtesy of Chris Brew. The "/" at the end of the URL is important.

[authtokens]
…
[authgroup: gridpp_iam_prod]
authtokens = d19ac000-1c1c-4444-1c1c-d19ac000001 https://iam.grid.hep.ph.ic.ac.uk/ * * *
[authgroup: gridpp_iam_test]
authtokens = d19ac001-1c1c-4444-1c1c-d19ac000001 https://iam.grid.hep.ph.ic.ac.uk/ * * *

[mapping]
…
map_to_user = gridpp_iam_prod pltgpp01:pltgpp
map_to_user = gridpp_iam_test pltgpp02:pltgpp