Bug ID 973885: SSL Handshakes timeout for client-side with OCSP stapling enabled intermittently

Last Modified: Mar 30, 2024

Affected Product(s):
BIG-IP LTM(all modules)

Fixed In:
16.1.0

Opened: Dec 15, 2020

Severity: 3-Major

Symptoms

SSL Handshakes will fail intermittently.

Impact

Intermittent SSL connection failure.

Conditions

OCSP stapling should be enabled in the client-ssl profile.

Workaround

None

Fix Information

Added back SSL_HS_ASYNC_DECR in HUDEVT_SSL_OCSP_RESUME_CLNT_HS handler which was reverted earlier. Handled the server-side OCSP resume which has debug TMM assert problem.

Behavior Change

Guides & references

K10134038: F5 Bug Tracker Filter Names and Tips