Last Modified: May 29, 2024
Affected Product(s):
BIG-IP TMOS
Known Affected Versions:
15.0.1.2, 15.0.1.3, 15.0.1.4, 15.1.0, 15.1.0.1, 15.1.0.2, 15.1.0.3, 15.1.0.4, 15.1.0.5, 15.1.1, 15.1.2, 15.1.2.1, 15.1.3, 15.1.3.1
Fixed In:
16.1.0, 15.1.4
Opened: Nov 16, 2020 Severity: 3-Major
After reconfiguring an interface-mode IPsec tunnel, the IPsec tunnel may fail to initiate or negotiate as a Responder.
Remote networks cannot be reached because BIG-IP refuses to negotiate IPsec tunnel.
-- IPsec interface mode -- Changing the IPsec tunnel configuration
Reboot or restart tmm. For ikev1 peers it will also be necessary to restart tmipsecd after restarting tmm.
Valid changes to the IPsec tunnel configuration result in the tunnel negotiation happening.