OPSS: Starting Admin Server Fails with:<BEA-090929> <Unable to load key store [keyStoreType="KSS", source="kss://system/demoidentity", message="oracle.security.jps.service.keystore.KeyStoreServiceException: JPS-06626: Could not get bootstrap key store (Doc ID 2206106.1)

Last updated on NOVEMBER 28, 2016

Applies to:

Oracle Platform Security for Java - Version 12.1.3.0.0 and later
Information in this document applies to any platform.

Symptoms

On : 12.1.3.0.0 version, Java Platform Security

When attempting to start the servers after jdk upgrade (jdk1.7.0_76) the following error occurs.

In the Admin server log

####<Jul 28, 2016 9:09:53 AM CDT> <Info> <Socket> <app42ad> <AdminServer> <[ACTIVE] ExecuteThread: '0' for queue: 'weblogic.kernel.Default (self-tuning)'> <<WLS Kernel>> <> <> <1469714993882> <BEA-000446> <Native I/O enabled.>
####<Jul 28, 2016 9:09:53 AM CDT> <Notice> <Security> <app42ad> <AdminServer> <VDE Replication Thread> <<WLS Kernel>> <> <> <1469714993897> <BEA-090171> <Loading the identity certificate and private key stored under the alias DemoIdentity from the kss keystore file kss://system/demoidentity.>
####<Jul 28, 2016 9:09:54 AM CDT> <Error> <Security> <app42ad> <AdminServer> <VDE Replication Thread> <<WLS Kernel>> <> <> <1469714994377> <BEA-090929> <Unable to load key store [keyStoreType="KSS", source="kss://system/demoidentity", exception="java.lang.RuntimeException", message="oracle.security.jps.service.keystore.KeyStoreServiceException: JPS-06626: Could not get bootstrap key store service. Reason oracle.security.jps.service.credstore.CredStoreException: JPS-05542: Bootstrap credential store context missing"]>
####<Jul 28, 2016 9:09:54 AM CDT> <Alert> <Security> <app42ad> <AdminServer> <VDE Replication Thread> <<WLS Kernel>> <> <> <1469714994377> <BEA-090166> <Failed to load identity keystore of type kss from file kss://system/demoidentity on server AdminServer>
####<Jul 28, 2016 9:09:54 AM CDT> <Notice> <Security> <app42ad> <AdminServer> <VDE Replication Thread> <<WLS Kernel>> <> <> <1469714994378> <BEA-090169> <Loading trusted certificates from the kss keystore file kss://system/trust.>
####<Jul 28, 2016 9:09:54 AM CDT> <Error> <Security> <app42ad> <AdminServer> <VDE Replication Thread> <<WLS Kernel>> <> <> <1469714994378> <BEA-090929> <Unable to load key store [keyStoreType="KSS", source="kss://system/trust", exception="java.lang.RuntimeException", message="oracle.security.jps.service.keystore.KeyStoreServiceException: JPS-06626: Could not get bootstrap key store service. Reason oracle.security.jps.service.credstore.CredStoreException: JPS-05542: Bootstrap credential store context missing"]>
####<Jul 28, 2016 9:09:54 AM CDT> <Warning> <Security> <app42ad> <AdminServer> <VDE Replication Thread> <<WLS Kernel>> <> <> <1469714994378> <BEA-090164> <Failed to load trusted certificates from keystore kss://system/trust of type kss>
####<Jul 28, 2016 9:09:54 AM CDT> <Notice> <Security> <app42ad> <AdminServer> <VDE Replication Thread> <<WLS Kernel>> <> <> <1469714994379> <BEA-090169> <Loading trusted certificates from the jks keystore file /usr/java/jdk1.7.0_76/jre/lib/security/cacerts.>
###<Jul 28, 2016 9:09:54 AM CDT> <Info> <WebLogicServer> <app42ad> <AdminServer> <VDE Replication Thread> <<WLS Kernel>> <> <> <1469714994434> <BEA-000307> <Exportable key maximum lifespan set to 500 uses.>

####<Jul 28, 2016 9:09:59 AM CDT> <Info> <Security> <app42ad> <AdminServer> <[STANDBY] ExecuteThread: '2' for queue: 'weblogic.kernel.Default (self-tuning)'> <<WLS Kernel>> <> <d92c400e-c3fd-4d7e-9533-7d4567575034-00000001> <1469714999947> <BEA-090894> <Successfully loaded the OPSS Policy Provider using oracle.security.jps.internal.policystore.JavaPolicyProvider.>
####<Jul 28, 2016 9:10:00 AM CDT> <Info> <Security> <app42ad> <AdminServer> <[STANDBY] ExecuteThread: '2' for queue: 'weblogic.kernel.Default (self-tuning)'> <<WLS Kernel>> <> <d92c400e-c3fd-4d7e-9533-7d4567575034-00000001> <1469715000157> <BEA-000000> <Starting OpenJPA 1.1.1-SNAPSHOT>
####<Jul 28, 2016 9:10:00 AM CDT> <Info> <Security> <app42ad> <AdminServer> <[STANDBY] ExecuteThread: '2' for queue: 'weblogic.kernel.Default (self-tuning)'> <<WLS Kernel>> <> <d92c400e-c3fd-4d7e-9533-7d4567575034-00000001> <1469715000290> <BEA-000000> <StoreServiceImpl.initJDO - StoreService is initialized with Id = ldap_D+eLej9VbWbUUnhlAzKt59/PH08=>
####<Jul 28, 2016 9:10:00 AM CDT> <Info> <Security> <app42ad> <AdminServer> <[STANDBY] ExecuteThread: '2' for queue: 'weblogic.kernel.Default (self-tuning)'> <<WLS Kernel>> <> <d92c400e-c3fd-4d7e-9533-7d4567575034-00000001> <1469715000310> <BEA-090516> <The Authenticator provider has pre-existing LDAP data.>

 

Changes

 The issue can be reproduced at will with the following steps: update of their JDK version to jdk1.7.0_76.

Cause

Sign In with your My Oracle Support account

Don't have a My Oracle Support account? Click to get started

My Oracle Support provides customers with access to over a
Million Knowledge Articles and hundreds of Community platforms