Upgrade Airlock IAM with Docker image
This article explains how to upgrade a single local Airlock IAM instance running as a Docker container. The required IAM Docker image is pulled directly from the (private image respository) Quay.io and used locally.
To upgrade a local IAM instance with Docker, perform these steps:
- Stop the currently running IAM instance in Docker. In our example, this is the
authinstance, locally located in$CUSTOM_DIRECTORY/airlock-iam-docker/iam/instances/auth. It runs in the Docker container calledairlock-iam.
In the Docker CLI, run the following command: - Now upgrade your IAM instance by running the following command in the Docker CLI. Be sure to
- Run this command from the local directory
$CUSTOM_DIRECTORY/airlock-iam-docker. - Use the correct IAM version in the expression
quay.io/airlock/iam:<version to upgrade to>. - Use the instance name from your previous setup in the expression
upgrade -i <instance name>(here, the instance name isauth).
- Run this command from the local directory
- Notice
Starting with IAM 8.5, the IAM license and analytics feature is mandatory. If it is not configured, configuration activation will fail. The IAM CLI is used to configure the analytics plugin, during the
init,reset, andupgradeoperations. When you run any of these operations, you must specify your preferred analytics mode. For more information, see License and usage analytics. - You have now upgraded Airlock IAM with Docker.
- Start the upgraded IAM instance by running the command below. This command will do the following:
--env “TZ=Europe/Zurich”: Sets the timezone to Europe/Zurich.--env “IAM_LOG_LEVEL=DEBUG”: Sets the log level to “debug”.-v “$(pwd)/iam:/home/airlock/iam”: Mounts the IAM configuration directory. That is, it maps your localiamfolder to the/home/airlock/iamdirectory inside the Docker container, and synchronizes any local change immediately with the container at/home/airlock/iam.8443:8443: Maps your local porthttps://localhost:8443to the Docker container port8443, and thus exposes the IAM web interface to your browser.run -i auth: Starts the upgraded IAM instanceauth.
- To check that the upgraded IAM instance is really up, running, and ready for use, enter
https://localhost:8443/auth-admin/ui/app/loginin your browser. This will open the IAM Adminapp login page. Note that it may take some time before the application is available. - The upgrade was successful, if you can log in to the Adminapp and continue working as usual.
Further information and links
Internal links
- Obtaining the Docker image provides detailed information on obtaining a Docker image,
- either by pulling the image from the repository Quay.io, or
- by downloading it from the Airlock Techzone.
- License and usage analytics