Bug ID 1038741: NTLM type-1 message triggers "Unparsable request content" violation.

Last Modified: Feb 07, 2024

Affected Product(s):
BIG-IP ASM(all modules)

Known Affected Versions:
15.1.4, 15.1.4.1, 15.1.5

Fixed In:
17.0.0, 16.1.2.2, 15.1.5.1, 14.1.4.6, 13.1.5

Opened: Aug 05, 2021

Severity: 4-Minor

Symptoms

When internal parameter for "authorization header decode failure" is disabled, Valid NTLM type-1 message will be blocked with "Unparsable request content" violation.

Impact

Valid NTLM Type-1 message will be blocked by ASM.

Conditions

Disable internal parameter ignore_authorization_header_decode_failure

Workaround

Enable internal parameter ignore_authorization_header_decode_failure, ASM will not block the NTLM type-1 message request

Fix Information

None

Behavior Change

Guides & references

K10134038: F5 Bug Tracker Filter Names and Tips