VOMS in LCG2 2_7_0

Due date for the Release: around January 20th 2006

Last Update: 2006-01-19

For the Release notes:

Information about the voms-client:
voms-client 1.6.10 should be packaged in this release, which is also included in glite R1.4.1.
The following information that sites need to know will be packaged in the release:
- the contents of the $EDG_LOCATION/etc/vomses directory.
It is used with users type the command:
voms-proxy-init -voms [VO nickname]:/group/role=[VOMS-Role]
- the host certificates of the VOMS servers lcg-voms.cern.ch and voms.cern.ch.
- the value of the environment variable X509_VOMS_DIR

Information about the voms-server:
voms 1.6.10 and voms-admin 1.2.10 are packaged in this LCG2 Release.

Information about edg-mkgridmap:
edg-mkgridmap.conf (content in http://cern.ch/dimou/lcg/registrar/TF/edg-mkgridmap.conf) changes in this release to take into consideration new VOs (unosat and geant4) and the server voms.cern.ch.

For the deployment team:

Information about voms-admin:
Make available voms-admin 1.2.10, as in gLite R1.4.
glite-security-voms-admin-server-1.2.10-1
glite-security-voms-admin-interface-1.0.2-1
glite-security-voms-admin-client-1.2.10-1

Information about the voms-client:

1. Make available the "voms-client*1.
6.10.
Rpms:
glite-security-voms-clients-1.6.10-0
glite-security-voms-api-c-1.6.10-0
glite-security-voms-api-cpp-1.6.10-0
glite-security-voms-api-1.6.10-0

2. Add the 'vomses' files for the new VOs (sixt, unosat and geant4) in X509_VOMS_DIR of the afs UI. Content below.
The host certificates of both voms servers are in:
/afs/cern.ch/user/d/dimou/public/host:lcg-voms.cern.ch.cert and
/afs/cern.ch/user/d/dimou/public/host:voms.cern.ch.cert

3. The files in the $EDG_LOCATION/etc/vomses directory should be the same as in point 2 above. Content below.
The files and the directory must belong to root (mode 644).
The contents of these files are according to the pattern:
" VO nickname", "hostname", "Port_number", "Host_Cert_Subject", "VO name"

File name File content
alice-voms.cern.ch "alice" "voms.cern.ch" "15000" "/C=CH/O=CERN/OU=GRID/CN=host/voms.cern.ch" "alice"
atlas-voms.cern.ch "atlas" "voms.cern.ch" "15001" "/C=CH/O=CERN/OU=GRID/CN=host/voms.cern.ch" "atlas"
cms-voms.cern.ch "cms" "voms.cern.ch" "15002" "/C=CH/O=CERN/OU=GRID/CN=host/voms.cern.ch" "cms"
lhcb-voms.cern.ch "lhcb" "voms.cern.ch" "15003" "/C=CH/O=CERN/OU=GRID/CN=host/voms.cern.ch" "lhcb"
dteam-voms.cern.ch "dteam" "voms.cern.ch" "15004" "/C=CH/O=CERN/OU=GRID/CN=host/voms.cern.ch" "dteam"
alice-lcg-voms.cern.ch "alice" "lcg-voms.cern.ch" "15000" "/C=CH/O=CERN/OU=GRID/CN=host/lcg-voms.cern.ch" "alice"
atlas-lcg-voms.cern.ch "atlas" "lcg-voms.cern.ch" "15001" "/C=CH/O=CERN/OU=GRID/CN=host/lcg-voms.cern.ch" "atlas"
cms-lcg-voms.cern.ch "cms" "lcg-voms.cern.ch" "15002" "/C=CH/O=CERN/OU=GRID/CN=host/lcg-voms.cern.ch" "cms"
lhcb-lcg-voms.cern.ch "lhcb" "lcg-voms.cern.ch" "15003" "/C=CH/O=CERN/OU=GRID/CN=host/lcg-voms.cern.ch" "lhcb"
dteam-lcg-voms.cern.ch "dteam" "lcg-voms.cern.ch" "15004" "/C=CH/O=CERN/OU=GRID/CN=host/lcg-voms.cern.ch" "dteam"
sixt-lcg-voms.cern.ch "sixt" "lcg-voms.cern.ch" "15005" "/C=CH/O=CERN/OU=GRID/CN=host/lcg-voms.cern.ch" "sixt"
unosat-lcg-voms.cern.ch "unosat" "lcg-voms.cern.ch" "15006" "/C=CH/O=CERN/OU=GRID/CN=host/lcg-voms.cern.ch" "unosat"
geant4-lcg-voms.cern.ch "geant4" "lcg-voms.cern.ch" "15007" "/C=CH/O=CERN/OU=GRID/CN=host/lcg-voms.cern.ch" "geant4"
test-lcg-voms.cern.ch "test" "lcg-voms.cern.ch" "15010" "/C=CH/O=CERN/OU=GRID/CN=host/lcg-voms.cern.ch" "test"

Information on the voms server:
Rpms involved:

glite-security-voms-mysql-1.1.2-0
glite-security-voms-config-1.6.10-0
glite-security-voms-oracle-1.1.4-0
glite-security-voms-server-1.6.10-0
glite-voms-server-oracle-config-2.1.2-1
glite-voms-server-mysql-config-2.1.0.0

Rpm Location as available in glite R1.4.1. :
http://glitesoft.cern.ch/EGEE/gLite/APT/R1.4/rhel30/RPMS.Release1.4/
http://glitesoft.cern.ch/EGEE/gLite/APT/R1.4/rhel30/RPMS.updates/
http://glitesoft.cern.ch/EGEE/gLite/APT/R1.4/rhel30/RPMS.externals/

Information on edg-mkgridmap:
The edg-mkgridmap.conf to make available is in: http://cern.ch/dimou/lcg/registrar/TF/edg-mkgridmap.conf Please copy its contents at the last moment as ATLAS and CMS might change their group structure in the coming days.

The CERN VOMS servers' set-up in November 2005 is described in http://cern.ch/dimou/lcg/voms/Xmas2005.html

Maria Dimou, IT/GD Grid Infrastructure Services