Last Modified: Dec 05, 2024
Affected Product(s):
BIG-IP LTM
Known Affected Versions:
16.1.0, 16.1.1, 16.1.2, 16.1.2.1, 16.1.2.2, 16.1.3, 16.1.3.1, 16.1.3.2, 16.1.3.3, 16.1.3.4, 16.1.3.5, 16.1.4, 16.1.4.1, 16.1.4.2, 16.1.4.3, 16.1.5, 16.1.5.1, 17.0.0, 17.0.0.1, 17.0.0.2, 17.1.0, 17.1.0.1, 17.1.0.2, 17.1.0.3, 17.1.1, 17.1.1.1, 17.1.1.2, 17.1.1.3, 17.1.1.4, 17.1.2
Opened: Jul 27, 2023 Severity: 3-Major
After upgrading from a BIG-IP version prior to v16.1.0 to BIG-IP v16.1.0 or later, one specific virtual-server is not working as expected and unable to forward the POST request towards the pool member.
Cannot send POST requests from client to server
1) Upgrade to v16.1.0 or later 2) Send a POST request from client with "Expect: 100-Continue". 3) Attach an irule using http::collect plus http::release to the Virtual Server.
If ASM is provisioned, a transparent ASM policy can be a workaround. 1. Create a transparent ASM policy At GUI Security >> Application Security: Security Policies Click Create Fill in following Policy name: <unique policy Name> Policy Type: Security(Default) Policy Template: Fundamental (Default) Leaning and Blocking Enforcement Mode: Transparent Save Click the policy name created above, and modify following Policy Building Learning Mode: Disabled Save and Apply Policy 2. Enable Application Security Policy with the ASM Policy created above at the LTM Virtul Server Security configuration.
None