Bug ID 1934397: SSL Orchestrator l2 inline monitor failure on r2000 or r4000 tenants

Last Modified: Jul 08, 2025

Affected Product(s):
BIG-IP LTM(all modules)

Known Affected Versions:
17.1.2.1, 17.1.2.2, 17.5.0, 17.5.1

Opened: May 05, 2025

Severity: 3-Major

Symptoms

SSL Orchestrator l2 inline monitors may not function correctly on r2000 or r4000 tenants.

Impact

The l2 inline service monitored via these interfaces will be marked down.

Conditions

-- SSL Orchestrator -- l2 inline monitor A traffic capture will show packets being egressed out one interface and not arriving at the other.

Workaround

The issue is due to the MAC filter that is installed for every interface's MAC address. When the filter also matches a vlan MAC address this issue occurrs. Compare the output of tmsh show net interface all-properties and tmsh show net vlan and make sure there is no MAC overlap. If there is, create some "dummy" vlans to move the overlap. After creating dummy vlans, re-assign the MACs with the following command tmsh modify ltm global-settings general share-single-mac global tmsh modify ltm global-settings general share-single-mac unique

Fix Information

None

Behavior Change

Guides & references

K10134038: F5 Bug Tracker Filter Names and Tips