Bug ID 1023229: False negative on specific authentication header issue

Last Modified: Aug 04, 2022

Bug Tracker

Affected Product:  See more info
BIG-IP ASM(all modules)

Known Affected Versions:
17.0.0, 17.0.0.1

Opened: Jun 04, 2021
Severity: 3-Major

Symptoms

Blocking does not occur on a specific authentication header issue when a non-default internal parameter is set.

Impact

A request with an authentication header issue can pass.

Conditions

ignore_authorization_header_decode_failure is not set to 0

Workaround

None

Fix Information

None

Behavior Change