From 1465e3c313a19183e967822438773af56ceb88fa Mon Sep 17 00:00:00 2001 From: Bitnami Bot Date: Fri, 9 Jan 2026 11:04:19 +0100 Subject: [PATCH] [bitnami/keycloak] Release 26.5.0-debian-12-r2 (#89381) Signed-off-by: Bitnami Bot --- bitnami/keycloak/26/debian-12/Dockerfile | 4 ++-- .../26/debian-12/rootfs/opt/bitnami/scripts/keycloak/run.sh | 5 +++++ .../debian-12/rootfs/opt/bitnami/scripts/keycloak/setup.sh | 5 +++++ 3 files changed, 12 insertions(+), 2 deletions(-) diff --git a/bitnami/keycloak/26/debian-12/Dockerfile b/bitnami/keycloak/26/debian-12/Dockerfile index 4b008ecde5a3..518c40e785ca 100644 --- a/bitnami/keycloak/26/debian-12/Dockerfile +++ b/bitnami/keycloak/26/debian-12/Dockerfile @@ -8,7 +8,7 @@ ARG JAVA_EXTRA_SECURITY_DIR="/bitnami/java/extra-security" ARG TARGETARCH LABEL org.opencontainers.image.base.name="docker.io/bitnami/minideb:bookworm" \ - org.opencontainers.image.created="2026-01-06T09:14:05Z" \ + org.opencontainers.image.created="2026-01-09T09:39:37Z" \ org.opencontainers.image.description="Application packaged by Broadcom, Inc." \ org.opencontainers.image.documentation="https://github.com/bitnami/containers/tree/main/bitnami/keycloak/README.md" \ org.opencontainers.image.source="https://github.com/bitnami/containers/tree/main/bitnami/keycloak" \ @@ -52,7 +52,7 @@ RUN /opt/bitnami/scripts/java/postunpack.sh RUN /opt/bitnami/scripts/keycloak/postunpack.sh ENV APP_VERSION="26.5.0" \ BITNAMI_APP_NAME="keycloak" \ - IMAGE_REVISION="1" \ + IMAGE_REVISION="2" \ JAVA_HOME="/opt/bitnami/java" \ PATH="/opt/bitnami/common/bin:/opt/bitnami/java/bin:/opt/bitnami/keycloak/bin:$PATH" diff --git a/bitnami/keycloak/26/debian-12/rootfs/opt/bitnami/scripts/keycloak/run.sh b/bitnami/keycloak/26/debian-12/rootfs/opt/bitnami/scripts/keycloak/run.sh index 30eba8c47d92..b6c3ec393b8c 100755 --- a/bitnami/keycloak/26/debian-12/rootfs/opt/bitnami/scripts/keycloak/run.sh +++ b/bitnami/keycloak/26/debian-12/rootfs/opt/bitnami/scripts/keycloak/run.sh @@ -28,6 +28,11 @@ if [[ -n "$KEYCLOAK_EXTRA_ARGS" ]]; then start_command+=("${extra_args[@]}") fi +# Keycloak 26.5.0 introduced stricter validation for certain configuration options +for env_var in "KC_HTTPS_TRUST_STORE_FILE" "KC_HTTPS_TRUST_STORE_PASSWORD" "KC_HTTPS_KEY_STORE_FILE" "KC_HTTPS_KEY_STORE_PASSWORD" "KC_HTTPS_CERTIFICATE_FILE" "KC_HTTPS_CERTIFICATE_KEY_FILE"; do + [[ -z "${!env_var:-}" ]] && unset "$env_var" +done + info "** Starting Keycloak **" if am_i_root; then exec_as_user "$KEYCLOAK_DAEMON_USER" /bin/bash -c "${start_command[*]}" diff --git a/bitnami/keycloak/26/debian-12/rootfs/opt/bitnami/scripts/keycloak/setup.sh b/bitnami/keycloak/26/debian-12/rootfs/opt/bitnami/scripts/keycloak/setup.sh index 801a7274603e..afdbd55ddc5a 100755 --- a/bitnami/keycloak/26/debian-12/rootfs/opt/bitnami/scripts/keycloak/setup.sh +++ b/bitnami/keycloak/26/debian-12/rootfs/opt/bitnami/scripts/keycloak/setup.sh @@ -21,6 +21,11 @@ keycloak_validate # Ensure 'daemon' user exists when running as 'root' am_i_root && ensure_user_exists "$KEYCLOAK_DAEMON_USER" --group "$KEYCLOAK_DAEMON_GROUP" +# Keycloak 26.5.0 introduced stricter validation for certain configuration options +for env_var in "KC_HTTPS_TRUST_STORE_FILE" "KC_HTTPS_TRUST_STORE_PASSWORD" "KC_HTTPS_KEY_STORE_FILE" "KC_HTTPS_KEY_STORE_PASSWORD" "KC_HTTPS_CERTIFICATE_FILE" "KC_HTTPS_CERTIFICATE_KEY_FILE"; do + [[ -z "${!env_var:-}" ]] && unset "$env_var" +done + # Ensure Keycloak is initialized keycloak_initialize