Bug ID 1066285: Master Key decrypt failure - decrypt failure.

Last Modified: Nov 07, 2022

Bug Tracker

Affected Product:  See more info
BIG-IP TMOS(all modules)

Known Affected Versions:
13.1.0,,,,,,,,, 13.1.1,,,,, 13.1.3,,,,,,, 13.1.4,, 14.1.0,,,,,, 14.1.2,,,,,,,,, 14.1.3,, 14.1.4,,,,,, 15.1.0,,,,,, 15.1.1, 15.1.2,, 15.1.3,, 15.1.4,, 15.1.5, 16.1.0, 16.1.1, 16.1.2,

Fixed In:
17.0.0,,,, 13.1.5

Opened: Dec 07, 2021
Severity: 3-Major


After MCPD restarts or the system reboots: -- the system is inoperative and MCPD may be restarting -- the logs report this error: err mcpd[12444]: 01071769:3: Decryption of the field (value) for object (config.auditing.forward.sharedsecret) failed while loading configuration that is encrypted with a different master key. -- the system may be reporting this error: load_config_files[5635]: "/usr/bin/tmsh -n -g -a load sys config partitions all " - failed. -- Error: failed to reset strict operations; disconnecting from mcpd. Will reconnect on next command. This may occur during a system upgrade.


MCPD will continuously restart, and the system will remain inoperative.


When config.auditing.forward.sharedsecret is encrypted and masterkey value is changed.


If a system is affected by this issue, set the DB key back to its default value. Once the configuration is loaded, set the DB key back to the correct value: - tmsh modify /sys db config.auditing.forward.sharedsecret value '<null>' After changing the SecureValue master key but before encountering the issue, run the following command to update the value of the DB key on-disk: setdb config.auditing.forward.sharedsecret "$(getdb config.auditing.forward.sharedsecret)"

Fix Information


Behavior Change