Certificate Authorities

  • You might obtain certificates (user, host, or ldap) from the HKGrid Certificate Authority (CA), which is set up primarily for those who would like to use a "non-official" CA for testing purpose. Please download this package into your gatekeeper machine (with GT installed), and issue the following commands for installation (as root):

# export GLOBUS_LOCATION=path_to_globus
# export GPT_LOCATION=path_to_gpt
# $GPT_LOCATION/sbin/gpt-build globus_simple_ca_5e8d46d5_setup-0.13.tar.gz
# $GPT_LOCATION/sbin/gpt-postinstall
# $GLOBUS_LOCATION/setup/globus_simple_ca_5e8d46d5_setup/setup-gsi [-default]

The HKGrid CA will be installed as the default CA of the system if the -default flag is used. If this option is skipped, however, you would still be allowed to use the HKGrid CA by running grid-cert-request with the -ca flag.

Please send the certification requests generated with the HKGrid CA to grid@csis.hku.hk.

  • Members who use their own CA's please submit the following information to grid@csis.hku.hk, we will publish the collected information in this website for easy access:
  • certificate
  • signing policy
  • certification revocation list (CRL) - optional
  • certification policy (CP) or certification practice statement (CPS) - optional
  • any other related documents

(A list of members' CA to be compiled later)

Copyright 2004 Hong Kong Grid Initiative | Last modified Jan 03, 2004