Participants: Maarten, Tom, Petr, Marcelo, Martin, Federica, Jim, Oxana, John, Dave D, Andrea, Marco, Liz, Alison, Francesco, Jeffrey, Roberta, Douglas
Apologies:
Previous Actions:
- Andrea/Francesco: provide more insight on how requests are done (i.e. http requests) and claim content
- Andrea has made slides to detail this
Notes:
- Recording of Andrea's presentation:
- What should be in Subject/Actor
- Slides from last meeting
- Rucio Client should expect to look & find a token in a standard location - WLCG bearer token discovery recommendations
- Meeting recording to be published, some notes:
- Need a subject token in order to do a token exchange & mechanism for token refresh during upload
- htgettoken workflow can be used to get a valid token with user identity
- Rucio does check for token expiry and refresh during job process
- FTS and 3rd Party workflow a bit different - decision of the VO for the finer details
- During Mixed Mode Server and Client need to be flexible wrt tokens and X509
- As long as the server knows what to return for which SE, the client does not need to understand that logic. Server needs to understand different issuers - this workflow needs to be understood.
- Production of a document based on slides from today's meeting.
- Andrea will have left by this point. Francesco and IAM team can help with this.
- Zenodo White Paper on this topic