[keycloak-user] Keycloak 1.5 HA clustering failure
Moon S.Yim
moon_s_yim at hotmail.com
Fri May 27 14:50:50 EDT 2016
Hello keycloak users,
Not sure this is a correct way to ask question in User Forum.
We're using keyclock 1.5 for production as single node, it works well.
We're trying to make HA clustering with 2 nodes, but doesn't work.
just following keycloak user guide (http://keycloak.github.io/docs/userguide/keycloak-server/pdf/keycloak-reference-guide-en-US.pdf) Chapter 29. Clustering.
how to start is
/opt/keycloak-1.5.0.Final/keycloak/bin/standalone.sh --server-config=standalone-keycloak-ha.xml -Djboss.bind.address=`hostname -i` &
or
/opt/keycloak-1.5.0.Final/keycloak/bin/standalone.sh --server-config=standalone-keycloak-ha.xml -Djboss.bind.address=`hostname -i` -bpublic=`hostname -i` -bprivate=`hostname -i` &
standalone-keycloak-ha.xml or standalone-ha.xml, the same results.
keyclock process is up and running on 2 nodes, but no log for clustering when it starts up.
and Admin console login is failed.
18:02:59,625 WARN [org.keycloak.events] (default task-21) type=CODE_TO_TOKEN_ERROR, realmId=master, clientId=security-admin-console, userId=null, ipAddress=10.x.x.113, error=invalid_code, code_id=c4f010be-9747-4b8a-a7be-e44f9bc1e3bf, client_auth_method=client-secret
18:03:51,482 WARN [org.keycloak.events] (default task-6) type=LOGIN_ERROR, realmId=master, clientId=null, userId=null, ipAddress=10.x.x.113, error=invalid_code
my questions for HA clustering is
1) how 2 nodes recognize each other? there is no configuration for that except sessions cache of infinispan/Keycloak container
2) any good example of standalone-keycloak-ha.xml for 2 nodes clustering.
Thanks
Best Regards, MoonY
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://lists.jboss.org/pipermail/keycloak-user/attachments/20160527/1b7b07dc/attachment.html
More information about the keycloak-user
mailing list