<html><head><meta http-equiv="Content-Type" content="text/html charset=windows-1252"></head><body style="word-wrap: break-word; -webkit-nbsp-mode: space; -webkit-line-break: after-white-space;" class="">Hi Marek,<div class="">your’re right that i’m hitting directly localhsot on different ports.</div><div class=""><br class=""><div class="">I was thinking about cookies resp. load balancer so I checked cookies and they were sent on both ports.</div><div class=""><br class=""></div><div class="">I’ll set up load balancer and I’ll will see. </div><div class=""><div class="">
<div style="color: rgb(0, 0, 0); font-family: Helvetica; font-size: 12px; font-style: normal; font-variant: normal; font-weight: normal; letter-spacing: normal; line-height: normal; orphans: auto; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: auto; word-spacing: 0px; -webkit-text-stroke-width: 0px;" class=""><br class="Apple-interchange-newline">Thanks,</div><div style="color: rgb(0, 0, 0); font-family: Helvetica; font-size: 12px; font-style: normal; font-variant: normal; font-weight: normal; letter-spacing: normal; line-height: normal; orphans: auto; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: auto; word-spacing: 0px; -webkit-text-stroke-width: 0px;" class=""><br class=""></div><div style="color: rgb(0, 0, 0); font-family: Helvetica; font-size: 12px; font-style: normal; font-variant: normal; font-weight: normal; letter-spacing: normal; line-height: normal; orphans: auto; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: auto; word-spacing: 0px; -webkit-text-stroke-width: 0px;" class="">Libor Krzyžanek</div><div style="color: rgb(0, 0, 0); font-family: Helvetica; font-size: 12px; font-style: normal; font-variant: normal; font-weight: normal; letter-spacing: normal; line-height: normal; orphans: auto; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: auto; word-spacing: 0px; -webkit-text-stroke-width: 0px;" class=""><a href="http://jboss.org" class="">jboss.org</a> Development Team</div>
</div>
<br class=""><div><blockquote type="cite" class=""><div class="">On 24 Apr 2015, at 19:06, Marek Posolda <<a href="mailto:mposolda@redhat.com" class="">mposolda@redhat.com</a>> wrote:</div><br class="Apple-interchange-newline"><div class="">
<meta content="text/html; charset=windows-1252" http-equiv="Content-Type" class="">
<div bgcolor="#FFFFFF" text="#000000" class="">
<div class="moz-cite-prefix">Hi Libor,<br class="">
<br class="">
the config files looks good (at least for the first look), but
question is if you're using loadbalancer? <br class="">
<br class="">
If you're not using loadbalancer and you access keycloak servers
directly on localhost:8080 and localhost:8180, the problem might
be just in the fact that browser cookie KEYCLOAK_IDENTITY is not
shared between them and hence going to localhost:8180 will not
find KEYCLOAK_IDENTITY cookie from localhost:8080 and will try to
create new session. <br class="">
<br class="">
You can check admin console or account management and list
available user sessions on both nodes. If both cluster nodes have
same sessions, then replication of userSessions works fine, but
only issue is really the cookie. <br class="">
<br class="">
I suspect that in production, you will use loadbalancer, so this
issue won't happen.<br class="">
<br class="">
Marek<br class="">
<br class="">
On 24.4.2015 15:50, Libor Krzyžanek wrote:<br class="">
</div>
<blockquote cite="mid:0AD87949-C8F5-418C-8C79-036155DBEBD7@redhat.com" type="cite" class="">
<meta http-equiv="Content-Type" content="text/html;
charset=windows-1252" class="">
Attaching keycloak-server.json and standalone-ha.xml<br class="">
<div class="">
<div style="font-family: Helvetica; font-size: 12px; font-style: normal; font-variant: normal; font-weight: normal; letter-spacing: normal; line-height: normal; orphans: auto; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: auto; word-spacing: 0px; -webkit-text-stroke-width: 0px;" class=""><br class="Apple-interchange-newline">
Thanks,</div>
<div style="font-family: Helvetica; font-size: 12px; font-style: normal; font-variant: normal; font-weight: normal; letter-spacing: normal; line-height: normal; orphans: auto; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: auto; word-spacing: 0px; -webkit-text-stroke-width: 0px;" class=""><br class="">
</div>
<div style="font-family: Helvetica; font-size: 12px; font-style: normal; font-variant: normal; font-weight: normal; letter-spacing: normal; line-height: normal; orphans: auto; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: auto; word-spacing: 0px; -webkit-text-stroke-width: 0px;" class="">Libor
Krzyžanek</div>
<div style="font-family: Helvetica; font-size: 12px; font-style: normal; font-variant: normal; font-weight: normal; letter-spacing: normal; line-height: normal; orphans: auto; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: auto; word-spacing: 0px; -webkit-text-stroke-width: 0px;" class=""><a moz-do-not-send="true" href="http://jboss.org/" class="">jboss.org</a> Development
Team</div>
</div>
<br class="">
<fieldset class="mimeAttachmentHeader"></fieldset>
<br class="">
<meta http-equiv="Content-Type" content="text/html;
charset=windows-1252" class="">
<br class="">
<fieldset class="mimeAttachmentHeader"></fieldset>
<br class="">
<meta http-equiv="Content-Type" content="text/html;
charset=windows-1252" class="">
<br class="">
<div class="">
<blockquote type="cite" class="">
<div class="">On 24 Apr 2015, at 15:36, Stian Thorgersen <<a moz-do-not-send="true" href="mailto:stian@redhat.com" class="">stian@redhat.com</a>> wrote:</div>
<br class="Apple-interchange-newline">
<div class="">Can you attach your keycloak-server.json and
standalone.xml?<br class="">
<br class="">
----- Original Message -----<br class="">
<blockquote type="cite" class="">From: "Libor Krzyžanek"
<<a moz-do-not-send="true" href="mailto:lkrzyzan@redhat.com" class="">lkrzyzan@redhat.com</a>><br class="">
To: "keycloak-user" <<a moz-do-not-send="true" href="mailto:keycloak-user@lists.jboss.org" class="">keycloak-user@lists.jboss.org</a>><br class="">
Sent: Friday, 24 April, 2015 3:12:29 PM<br class="">
Subject: [keycloak-user] Clustering on localhost with
shared DB<br class="">
<br class="">
Hi,<br class="">
I’m trying to achieve full user session replication which
means when I’m<br class="">
logged in on node 1 and then hit node 2 then I expect to
be logged in but<br class="">
I’m forced to log in again.<br class="">
<br class="">
I have:<br class="">
1. two localhost nodes with JBoss EAP 6.4 + War
installation<br class="">
2. Postgres<br class="">
3. EAP cofigured based on<br class="">
<a moz-do-not-send="true" href="http://docs.jboss.org/keycloak/docs/1.2.0.Beta1/userguide/html/clustering.html" class="">http://docs.jboss.org/keycloak/docs/1.2.0.Beta1/userguide/html/clustering.html</a><br class="">
<br class="">
I triedeither<br class="">
<distributed-cache name="sessions" mode="SYNC" owners=“
2 " /><br class="">
<distributed-cache name="loginFailures" mode="SYNC"
owners=“ 2 " /><br class="">
or<br class="">
<replicated-cache name="sessions" mode="SYNC"/><br class="">
<replicated-cache name="loginFailures" mode="SYNC”/><br class="">
but with same result.<br class="">
<br class="">
I’m starting nodes by<br class="">
./jb1/bin/standalone.sh --server-config=standalone-ha.xml<br class="">
-Djboss.node.name=node1<br class="">
./jb2/bin/standalone.sh --server-config=standalone-ha.xml<br class="">
-Djboss.socket.binding.port-offset=100
-Djboss.node.name=node2<br class="">
<br class="">
<br class="">
both jb1 and jb2 are identical and they know each other
(Received new cluster<br class="">
view: [node1/keycloak|1] [node1/keycloak, node2/keycloak])<br class="">
<br class="">
How do you test clustering of KC please?<br class="">
<br class="">
Thanks,<br class="">
<br class="">
Libor Krzyžanek<br class="">
<a href="http://jboss.org" class="">jboss.org</a> Development Team<br class="">
<br class="">
<br class="">
_______________________________________________<br class="">
keycloak-user mailing list<br class="">
<a class="moz-txt-link-abbreviated" href="mailto:keycloak-user@lists.jboss.org">keycloak-user@lists.jboss.org</a><br class="">
<a class="moz-txt-link-freetext" href="https://lists.jboss.org/mailman/listinfo/keycloak-user">https://lists.jboss.org/mailman/listinfo/keycloak-user</a><br class="">
</blockquote>
</div>
</blockquote>
</div>
<br class="">
<br class="">
<fieldset class="mimeAttachmentHeader"></fieldset>
<br class="">
<pre wrap="" class="">_______________________________________________
keycloak-user mailing list
<a class="moz-txt-link-abbreviated" href="mailto:keycloak-user@lists.jboss.org">keycloak-user@lists.jboss.org</a>
<a class="moz-txt-link-freetext" href="https://lists.jboss.org/mailman/listinfo/keycloak-user">https://lists.jboss.org/mailman/listinfo/keycloak-user</a></pre>
</blockquote>
<br class="">
</div>
</div></blockquote></div><br class=""></div></div></body></html>