Bug ID 2448129: HMAC missing from HMAC DB for few modules in FIPS enabled device

Last Modified: Aug 30, 2026

Affected Product(s):
BIG-IP Install/Upgrade(all modules)

Known Affected Versions:
17.1.3.4, 17.5.1.8, 21.0.0.3, 21.1.0.1

Opened: Jul 30, 2026

Severity: 1-Blocking

Symptoms

In a FIPS-enabled device, upgrading or installing a defective ISO image causes the BIG-IP to remain in an "INOPERATIVE" state indefinitely due to image integrity failure. This failure occurs due to missing or incorrect HMACs for several modules. In /var/log/secure: crit root[3947]: BIG-IP Integrity Check: [ FAIL ] -- THE SYSTEM WILL HALT UPON REBOOT, CONTACT F5 NETWORKS FOR TECHNICAL SUPPORT

Impact

The BIG-IP system remains in "INOPERATIVE" state after upgrade

Conditions

-- BIG-IP FIPS-enabled device -- Upgrade to an affected version

Workaround

Disabling FIPS is a workaround

Fix Information

None

Behavior Change

Guides & references

K10134038: F5 Bug Tracker Filter Names and Tips