Last Modified: Jun 19, 2025
Affected Product(s):
BIG-IP APM
Known Affected Versions:
17.1.1.3, 17.1.1.4, 17.1.2, 17.1.2.1, 17.1.2.2
Opened: Dec 24, 2024 Severity: 3-Major
Newly discovered keys are not updated to access profiles with "dynamic server" enabled. As a result, they will be using older keys.
-- When you apply the access policy, the status remains yellow. -- OAuth fails as the access profile still uses the old keys.
-- BIG-IP HA pair -- BIG-IP system is configured as a OAuth client/Resource server -- Access profile has OAuth agent(OAuth client/OAuth scope) with "dynamic server" enabled -- Keys are updated on the OAuth authorization server which will be discovered on the OAuth client during discovery task
None
None