Bug ID 1060417: Tpm-integrity-status is "Unavailable" for standby controller, but tpm-status reports "Valid"

Last Modified: Dec 07, 2023

Affected Product(s):
F5OS Velos(all modules)

Fixed In:
F5OS-C 1.3.0

Opened: Nov 09, 2021

Severity: 3-Major

Symptoms

The tpm-integrity-status is "Unavailable" for the standby controller, but tpm-status reports "Valid".

Impact

Wrong tpm-status will be displayed on confD.

Conditions

This is encountered when checking TPM status: syscon-2-active# show components component controller-* state tpm-integrity-status TPM INTEGRITY NAME STATUS --------------------------- controller-1 Unavailable controller-2 Valid

Workaround

Restart vcc-chassis-manager container. From the root prompt of the system controller: [root@controller-1 ~]# docker restart vcc-chassis-manager

Fix Information

Issue is fixed in latest release. We are checking tpm-status in regular interval and updating correct information in confD.

Behavior Change

Guides & references

K10134038: F5 Bug Tracker Filter Names and Tips