Alma9 xrd client & sites with Root CA signed by SHA1
- Is it a mistake that XRootD client verify signature of self-signed Root CA?
- Alma9 (lxplus) issue with certificates where IGTF Root CA use self-signed with SHA1
- only problems with xroot protocol
- create XRootD issue issue#2150
Rucio + FTS with tokens
- details in the "Rucio Token Support" persentation last week in WLCG DOMA General
- FTS implemented configurable token issuer -> VO mapping (FTS-1987)
- Rucio can't easily use tokens & X.509 to query FTS for transfers submitted with tokens vs. X.509
- Now Rucio can get all VO transfers independently on authorization with FTS
- Require special FTS branch / build
- deployed on CERN FTS pilot
- most probably it'll be deployed also on ATLAS and CMS instance for DC24
- to be clarified participation of non-CERN FTS servers
StoRM stat with tokens
- support for "stat" with storage.create and storage.modify STOR-1600
dCache support for fireflyes
- Still issues ... may be dCache 9.2.7
- Too late for DC24 ...
IAM 1.8.3
- to be deployed at CERN before Xmas
- voms-impoter needs to be updated to synchronize AUP date
- ATLAS IAM instance now temporarily configured with 10 years AUP
- otherwise users would have to sign AUP in both - legacy VOMS and IAM VOMS