Last Modified: May 29, 2024
Affected Product(s):
BIG-IP AFM, ASM
Known Affected Versions:
14.1.0, 14.1.0.1
Fixed In:
15.0.0, 14.1.0.2
Opened: Jul 08, 2018 Severity: 3-Major
Dataset of TLS fingerprints of clients of a site can consume significantly more space than needed.
Dataset is full, so it does not contain a full TLS fingerprints set. As result there is a risk of creating false-positive TLS signatures.
-- BADOS with TLS signatures. -- AFM end user clients using the Mozilla Chrome browser.
Turn off TLS signatures.
Dataset of TLS fingerprints contains unique TLC fingerprints regardless GREASE ciphers.