Tokens used for daemon authentication should be readable only by root
When HTCondor daemons access or create tokens (in /etc/condor/tokens.d), they do so as user "condor". This patch will switch to using root instead, resulting in these tokens being readable only by root. This makes tokens match the security model used by all other credential mechanisms, such as pool password or SSL host certs.
Issues in code review addressed (i.e. docs updated), resolving.
code review: Looks good. Doesn't this require at least a version history entry since observable behavior has change and admins may set the ownership to condor based on past experience.