Last Modified: Sep 13, 2023
17.0.0, 126.96.36.199, 15.1.5, 188.8.131.52, 13.1.5
Opened: Aug 04, 2021 Severity: 3-Major
With the DTLS virtual server, when client sends the CLOSE_NOTIFY alert, BIG-IP is simply closing the connection without sending the CLOSE_NOTIFY back to client as well as the backend server. This causes the backend server to not close/shutdown the connection completely.
Backend server and client will have a dangling connection for certain period of time (Based on the timeout implementation at the respective ends).
This issue occurs with all DTLS virtual servers which has associated client-ssl and server-ssl profiles.