In light of the tragic events in Japan, the staff at the GOC hopes for the best for all of those affected by the earthquakes and tsunamis.
Specific to OSG Operations and Security we are, and will continue to see, RSV Warnings for the CRL Expiry Probe. This probe is non-critical and will not affect the resource status in OSG or WLCG. But, administrators should be aware that this warning may last until network connectivity is restored at the institutions serving Japanese CRLs. These CRLs include AIST and KEK.
We just learned that NAREGI CA has recovered connectivity. Therefore, this advisory only affects KEK CA and AIST CA.
We have around 80 users with certificates from KEK CA. We found no users
in OSG with a certificate issued by AIST CA. KEK CA CRL is scheduled to
expire on April 9, 2011 and AIST CRL is scheduled to expire on March 26,
2011. Both CA certificates have lifetimes through 2015. If connectivity
is not recovered by CRL expiration dates, our users with KEK and AIST
certificates will not be able to access grid resources due to expired
CRL files. We will give you more information once we understand how long
the recovery will take, and we will seek ways to restore access to
affected users.
Thank you,
OSG Operations
Friday, March 11, 2011
Friday, March 4, 2011
OSG DocDB Outage - Thursday, March 10
OSG DocDB may experience a brief outage on Thursday, March 10 between 07:00 and 08:00 CDT while the server reboots. The reboot and accompanying outage are related to work in another database and will not otherwise affect OSG DocDB.
Tuesday, March 1, 2011
GOC Service Update - Tuesday, March 8th at 14:00 UTC
The GOC will upgrade the following services beginning at Tuesday, March 8th, 2010 at 14:00 UTC. The GOC reserves eight hours (14:00 - 22:00 UTC) in the unlikely event that unexpected problems are encountered. We encourage users to test affected services before the production release.
MyOSG 1.32 (https://myosg.grid.iu.edu)
ITB version is now available for testing at https://myosg-itb.grid.iu.edu
Added OIM Search box that allows user to search various OIM entities which returns links to various OSG entities related to each entities. If no result is found, it provide link to OSG custom search provided by Google.
Various cosmetic / efficiency updates.
MyOSG 1.32 (https://myosg.grid.iu.edu)
ITB version is now available for testing at https://myosg-itb.grid.iu.edu
Added OIM Search box that allows user to search various OIM entities which returns links to various OSG entities related to each entities. If no result is found, it provide link to OSG custom search provided by Google.
Various cosmetic / efficiency updates.
Tuesday, February 22, 2011
OSG CA Distribution Release 1.17
A new release of the CA certificates is available at
http://software.grid.iu.edu/pacman/cadist/.
This is version 1.17 and uses IGTF 1.38 as the basis.
Changes to the OSG certificates package:
===== Version 1.17 ==============
Built 7 Feb 2011
IGTF 1.38 - current hash format (openssl 0.9x)
Changes from by IGTF
* Updated meta-data info file for SRCE (HR)
* Updated KEK CA root (617ff41b) with extended life time (JP)
* Updated contact email address for ArmeSFo (AM)
* Extended allowed namespace and new URL for SEE-GRID CA as EGI catch-all (EU)
* Extended allowed namespace for NAREGI CA (JP)
* Added accredited CILogin MICS CA (US)
* Extended life time for NCSA CACL (MICS) CA (US)
* Extended life time for NCSA MyProxy (SLCS) CA (US)
* Extended life time for NorduGrid CA (DK,NO,SE,FI,SI)
* Corrected namespaces file for TCS eScience Personal (EU)
Additional OSG Changes:
None
http://software.grid.iu.edu/pacman/cadist/.
This is version 1.17 and uses IGTF 1.38 as the basis.
Changes to the OSG certificates package:
===== Version 1.17 ==============
Built 7 Feb 2011
IGTF 1.38 - current hash format (openssl 0.9x)
Changes from by IGTF
* Updated meta-data info file for SRCE (HR)
* Updated KEK CA root (617ff41b) with extended life time (JP)
* Updated contact email address for ArmeSFo (AM)
* Extended allowed namespace and new URL for SEE-GRID CA as EGI catch-all (EU)
* Extended allowed namespace for NAREGI CA (JP)
* Added accredited CILogin MICS CA (US)
* Extended life time for NCSA CACL (MICS) CA (US)
* Extended life time for NCSA MyProxy (SLCS) CA (US)
* Extended life time for NorduGrid CA (DK,NO,SE,FI,SI)
* Corrected namespaces file for TCS eScience Personal (EU)
Additional OSG Changes:
None
Wednesday, February 16, 2011
OSG 1.2.18 Release Notification
OSG Operations and Integration are pleased to announce the release of OSG version 1.2.18
******************************
OSG 1.2.18 Update Notification
******************************
Date: February 16, 2011
Affected Components
The following components are affected:
* All RSV installations
Summary
This release contains the following updates:
* RSV 3.3.6 which fixes two bugs:
* A reporting bug that prevents WLCG availability from being reported to the GOC correctly
* A bug that prevents successfully sent reports from being deleted correctly and results in those records accumulating on the system
This release fixes all the RSV bugs that were present in the previous release. However, in our post-release testing, we found a new bug that in some rare circumstances could prevent WLCG availability statistics from being reported. While this is an unlikely occurrence, we recommend that sites which depend on WLCG availability reporting should hold off to the next release that will fix this bug. We believe this bug fix can be released within a week.
Update Instructions
Update instructions can be found on the OSG Twiki under the OSG 1.2 update instructions ( https://twiki.grid.iu.edu/bin/view/ReleaseDocumentation/OSG12UpdateInstructions ).
Additional Information
The release notes for the VDT 2.0.0p25 release underlying this release can be found here ( http://vdt.cs.wisc.edu/releases/2.0.0/release-p25.html ).
******************************
OSG 1.2.18 Update Notification
******************************
Date: February 16, 2011
Affected Components
The following components are affected:
* All RSV installations
Summary
This release contains the following updates:
* RSV 3.3.6 which fixes two bugs:
* A reporting bug that prevents WLCG availability from being reported to the GOC correctly
* A bug that prevents successfully sent reports from being deleted correctly and results in those records accumulating on the system
This release fixes all the RSV bugs that were present in the previous release. However, in our post-release testing, we found a new bug that in some rare circumstances could prevent WLCG availability statistics from being reported. While this is an unlikely occurrence, we recommend that sites which depend on WLCG availability reporting should hold off to the next release that will fix this bug. We believe this bug fix can be released within a week.
Update Instructions
Update instructions can be found on the OSG Twiki under the OSG 1.2 update instructions ( https://twiki.grid.iu.edu/bin/view/ReleaseDocumentation/OSG12UpdateInstructions ).
Additional Information
The release notes for the VDT 2.0.0p25 release underlying this release can be found here ( http://vdt.cs.wisc.edu/releases/2.0.0/release-p25.html ).
GOC Service Update - Tuesday, February 22th at 14:00 UTC
The GOC will upgrade the following services beginning at Tuesday, February 22th, 2010 at 14:00 UTC. The GOC reserves eight hours (14:00 - 22:00 UTC) in the unlikely event that unexpected problems are encountered. We encourage users to test affected services before the production release.
OIM 2.31 (https://oim.grid.iu.edu)
ITB version is now available for testing at https://oim-itb.grid.iu.edu
(patched) Fixed a bug that prevents resource registration ticket to be created if support center for the resource can not be found (soap element count for assignee field issue)
Improved the way error log was generated during footprint ticket generation.
GOC Ticket 1.33 (https://ticket.grid.iu.edu)
ITB version is now available for testing at https://ticket-itb.grid.iu.edu
Updated ticket title style for simple ticket updater.
Added a prompt to ask user if user really wants to submit a form without entering any update text.
Changed wording on VO form
(patched) Combined first and last name fields on ticket viewer / editor to be consistent with how name field is handled internally.
(patched) Fixed a bug on custom form (for admin only) error messages
TWiki (http://twiki.grid.iu.edu)
ITB version is now available for testing at https://twiki-itb.grid.iu.edu; we encourage users to .test this service before the production release.
TWiki's X509 authentication plugin has been replaced by GOC's custom made User authentication module which uses Apache's native x509 feature, and direct access to OIM authe/autho tables. This update will fix FNAL Certificate issue and other issues that have been discovered recently.
Fixed the MIME issue with various MS. Office documents on IE.
Setup forwarding from http to https (like it used to)
MyOSG 1.31 (https://myosg.grid.iu.edu)
ITB version is now available for testing at https://myosg-itb.grid.iu.edu
Added a link to user feedback form.
Made OpenTickets model more error resistant (in case of GOC Ticket connectivity issue)
(patched) Added missing CSS images
OSG Display (http://display.grid.iu.edu)
Modified SQL queries used for Gratia DB which might be causing performance issue (this update has not be finalized yet, and it is experimental until proven effective)
Operating System updates
RHEL operating system patches will be applied to bring systems up to date. A reboot will be required resulting in brief outages during the maintenance period.
OIM 2.31 (https://oim.grid.iu.edu)
ITB version is now available for testing at https://oim-itb.grid.iu.edu
(patched) Fixed a bug that prevents resource registration ticket to be created if support center for the resource can not be found (soap element count for assignee field issue)
Improved the way error log was generated during footprint ticket generation.
GOC Ticket 1.33 (https://ticket.grid.iu.edu)
ITB version is now available for testing at https://ticket-itb.grid.iu.edu
Updated ticket title style for simple ticket updater.
Added a prompt to ask user if user really wants to submit a form without entering any update text.
Changed wording on VO form
(patched) Combined first and last name fields on ticket viewer / editor to be consistent with how name field is handled internally.
(patched) Fixed a bug on custom form (for admin only) error messages
TWiki (http://twiki.grid.iu.edu)
ITB version is now available for testing at https://twiki-itb.grid.iu.edu; we encourage users to .test this service before the production release.
TWiki's X509 authentication plugin has been replaced by GOC's custom made User authentication module which uses Apache's native x509 feature, and direct access to OIM authe/autho tables. This update will fix FNAL Certificate issue and other issues that have been discovered recently.
Fixed the MIME issue with various MS. Office documents on IE.
Setup forwarding from http to https (like it used to)
MyOSG 1.31 (https://myosg.grid.iu.edu)
ITB version is now available for testing at https://myosg-itb.grid.iu.edu
Added a link to user feedback form.
Made OpenTickets model more error resistant (in case of GOC Ticket connectivity issue)
(patched) Added missing CSS images
OSG Display (http://display.grid.iu.edu)
Modified SQL queries used for Gratia DB which might be causing performance issue (this update has not be finalized yet, and it is experimental until proven effective)
Operating System updates
RHEL operating system patches will be applied to bring systems up to date. A reboot will be required resulting in brief outages during the maintenance period.
Thursday, February 10, 2011
Bug in OSG 1.2.17: Please don't update
Hello everyone,
Today we discovered a bug in the most recent OSG software release (1.2.17, released on Monday, February 7th) that affects WLCG availability reporting for sites. Sites may go into an UNKNOWN state one day after updating.
If you have not yet updated to version 1.2.17, we recommend that you wait until version 1.2.18. We expect to release it on Tuesday, February 15th.
If you have already updated to version 1.2.17, an easy workaround exists; we will have details available tomorrow after we conclude an initial round of testing. If your site has already reported as UNKNOWN, the GOC can help update the accounting records so that your site is not incorrectly marked as UNKNOWN.
In addition, we have identified the reason that we missed this bug in testing, and we have updated our Integration Testbed procedures to catch this type of problem in the future.
We apologize for any inconvenience.
-alain
-----------------------------------------------------------------
Alain Roy
Open Science Grid Software Coordinator roy@cs.wisc.edu
http://opensciencegrid.org http://vdt.cs.wisc.edu
Today we discovered a bug in the most recent OSG software release (1.2.17, released on Monday, February 7th) that affects WLCG availability reporting for sites. Sites may go into an UNKNOWN state one day after updating.
If you have not yet updated to version 1.2.17, we recommend that you wait until version 1.2.18. We expect to release it on Tuesday, February 15th.
If you have already updated to version 1.2.17, an easy workaround exists; we will have details available tomorrow after we conclude an initial round of testing. If your site has already reported as UNKNOWN, the GOC can help update the accounting records so that your site is not incorrectly marked as UNKNOWN.
In addition, we have identified the reason that we missed this bug in testing, and we have updated our Integration Testbed procedures to catch this type of problem in the future.
We apologize for any inconvenience.
-alain
-----------------------------------------------------------------
Alain Roy
Open Science Grid Software Coordinator roy@cs.wisc.edu
http://opensciencegrid.org http://vdt.cs.wisc.edu
Subscribe to:
Posts (Atom)
Copyright 2009 Indiana University - Developed for Open Science Grid