Bug ID 1737465: Port number being used for verifying server certificate CN field

Last Modified: Dec 13, 2024

Affected Product(s):
BIG-IP APM(all modules)

Known Affected Versions:
17.1.1, 17.1.1.1, 17.1.1.2, 17.1.1.3, 17.1.1.4, 17.1.2

Opened: Nov 14, 2024

Severity: 4-Minor

Symptoms

TMM reports a SSL certificate error: warning tmm1[18695]: 01260022:4: Peer cert verification: The common name (10.1.1.1) is invalid or does not match the authenticate name (10.1.1.1:4430). The subject alternative name also does not match the authenticate name.

Impact

SSL server certificate validation fails

Conditions

-- The ssl server certificate is set to "require" -- The URI includes the port number

Workaround

Set server certificate requirement to "ignore"

Fix Information

None

Behavior Change

Guides & references

K10134038: F5 Bug Tracker Filter Names and Tips