Bug ID 723061: Possible tmm core during high load, or when an ASM policy is enabled by other modules

Last Modified: Jul 12, 2023

Affected Product(s):
BIG-IP ASM(all modules)

Known Affected Versions:
14.0.1.1, 14.0.1, 14.0.0.5, 14.0.0.4, 14.0.0.3, 14.0.0.2, 14.0.0.1, 14.0.0, 13.1.3.6, 13.1.3.5

Fixed In:
14.1.0, 13.1.5

Opened: Jun 05, 2018

Severity: 2-Critical

Symptoms

TMM may crash if other modules enable ASM conditionally (e.g., 'ASM::enable' in an iRule) or if the BIG-IP system is under heavy memory load.

Impact

Traffic disrupted while tmm restarts.

Conditions

-- DoSL7 profile or Bot Defense profile is attached to a virtual server. Along with either of the following: -- The BIG-IP system is experiencing high load (low memory). -- An ASM policy is enabled by another module or configuration, such as an APM Access policy or an ASM::enable iRule command.

Workaround

Do not use 'ASM::enable' (or similar) to enable an ASM policy, when using DoSL7 or Bot Defense profiles attached to virtual servers.

Fix Information

No tmm core occurs during high load or when an ASM policy is enabled by other modules

Behavior Change

Guides & references

K10134038: F5 Bug Tracker Filter Names and Tips