Disable FIPS for JBoss EAP with RHEL 8.6 and later
Issue
- We need to disable FIPS for our JBoss EAP server
- I started JBoss EAP by adding "-Dcom.redhat.fips=false" to start without FIPS mode
- I am getting the following error :
/subsystem=elytron/credential-store=myCS:add(relative-to=jboss.server.config.dir, path=myCS.store, credential-reference={clear-text="password"}, create=true)
ERROR [org.jboss.msc.service.fail] (MSC service thread 1-1) MSC000001: Failed to start service org.wildfly.security.credential-store.myCS: org.jboss.msc.service.StartException in service org.wildfly.security.credential-store.myCS: WFLYELY00004: Unable to start the service.
at org.wildfly.extension.elytron.CredentialStoreResourceDefinition$CredentialStoreDoohickey$1.get(CredentialStoreResourceDefinition.java:535)
at org.wildfly.extension.elytron.CredentialStoreResourceDefinition$CredentialStoreDoohickey$1.get(CredentialStoreResourceDefinition.java:492)
at org.wildfly.extension.elytron.ElytronDoohickey.get(ElytronDoohickey.java:114)
...
Caused by: org.wildfly.security.credential.store.CredentialStoreException: ELY09514: Unable to initialize credential store
at org.wildfly.security.credential.store.impl.KeyStoreCredentialStore.getKeyStoreInstance(KeyStoreCredentialStore.java:955)
at org.wildfly.security.credential.store.impl.KeyStoreCredentialStore.load(KeyStoreCredentialStore.java:846)
...
Caused by: java.security.KeyStoreException: JCEKS not found
at java.security.KeyStore.getInstance(KeyStore.java:851)
at org.wildfly.security.credential.store.impl.KeyStoreCredentialStore.getKeyStoreInstance(KeyStoreCredentialStore.java:951)
... 16 more
Caused by: java.security.NoSuchAlgorithmException: JCEKS KeyStore not available
at sun.security.jca.GetInstance.getInstance(GetInstance.java:159)
at java.security.Security.getImpl(Security.java:775)
at java.security.KeyStore.getInstance(KeyStore.java:848)
... 17 more
Environment
- Red Hat JBoss Enterprise Application Platform (JBoss EAP)
- 7.4.4
- Red Hat Enterprise Linux (RHEL)
- 8.6
Subscriber exclusive content
A Red Hat subscription provides unlimited access to our knowledgebase, tools, and much more.