IBM Verify

IBM Verify

Join this online user group to communicate across Security product users and IBM experts by sharing advice and best practices with peers and staying up to date regarding product enhancements.

 View Only
  • 1.  IBM Verify Identity Access Extension for OIDC Provider Container 1.0.1, /var/isvaop/config/keystore: no such file or directory

    Posted Tue May 13, 2025 03:28 PM

    Hi,

    I am trying the IBM Verify Identity Access Extension for OIDC Provider Container, version 1.0.1, on the ISVA appliance version 10.0.8. The container image is "icr.io/ivia/ivia-oidc-provider:25.03". After created the container deployment with the REST API, I noticed the following error in the container logs:
    951 2025-05-09T16:09:54.886881065-04:00 stdout F [05/09/2025 20:09:54.886 UTC] (internal.config.processKeystore) I [CORR_ID-6faabacd-affd-4fc6-887c-88179ba257ac] "Processing keystores"

    952 2025-05-09T16:09:54.887026722-04:00 stdout F [05/09/2025 20:09:54.886 UTC] (internal.config.init) F [CORR_ID-6faabacd-affd-4fc6-887c-88179ba257ac] "Unable to continue. Error occurred when processing keystores: could not load keystore folder: open /var/isvaop/config/keystore: no such file or directory"

    But the container metadata of the volume "configuration" has a different mount point:

    "volumes": [
                {
                    "name""configuration",
                    "mountpoint""/var/iviaop/config"
                },
                {
                    "name""runjs_input",
                    "mountpoint""/var/iviaop/input"
                }
            ],

    I am wondering why the newest version of oidc container is still looking for the path of "/var/isvaop/config/"? Did any body experience the same behavior?

    Regards,

    Eric



    ------------------------------
    Regards,
    Eric
    ------------------------------


  • 2.  RE: IBM Verify Identity Access Extension for OIDC Provider Container 1.0.1, /var/isvaop/config/keystore: no such file or directory

    Posted Wed May 14, 2025 07:38 AM

    Hi,

    We also have this issue, it seems like a miss from developers during release of version 1.0.1, we currently have an open support case regarding that.



    ------------------------------
    Sergej Maleev
    ------------------------------



  • 3.  RE: IBM Verify Identity Access Extension for OIDC Provider Container 1.0.1, /var/isvaop/config/keystore: no such file or directory

    Posted Wed May 14, 2025 09:36 AM

    Good to know that I am not the only one having this issue. Did you also try the older version of the extension, before 1.0.1? I want to try that, but could never find any older version of the extension. Older versions of the container images did not help. 



    ------------------------------
    Regards,
    Eric
    ------------------------------



  • 4.  RE: IBM Verify Identity Access Extension for OIDC Provider Container 1.0.1, /var/isvaop/config/keystore: no such file or directory

    Posted Wed May 14, 2025 09:24 PM

    We have fixed this issues, and will release a new extension.



    ------------------------------
    Sumana Narasipur
    ------------------------------



  • 5.  RE: IBM Verify Identity Access Extension for OIDC Provider Container 1.0.1, /var/isvaop/config/keystore: no such file or directory

    Posted Thu May 15, 2025 09:01 AM

    That is good news. Thanks for the quick turnaround. Will look out for the new version. 



    ------------------------------
    Regards,
    Eric
    ------------------------------