Bug ID 1073625: Peer (standby) unit's policies after autosync show a need for Apply Policy when the imported policy has learning enabled.

Last Modified: Aug 23, 2022

Bug Tracker

Affected Product:  See more info
BIG-IP ASM(all modules)

Known Affected Versions:
14.1.0, 14.1.0.1, 14.1.0.2, 14.1.0.3, 14.1.0.5, 14.1.0.6, 14.1.2, 14.1.2.1, 14.1.2.2, 14.1.2.3, 14.1.2.4, 14.1.2.5, 14.1.2.6, 14.1.2.7, 14.1.2.8, 14.1.3, 14.1.3.1, 14.1.4, 14.1.4.1, 14.1.4.2, 14.1.4.3, 14.1.4.4, 14.1.4.5, 14.1.4.6, 14.1.5, 15.1.0, 15.1.0.1, 15.1.0.2, 15.1.0.3, 15.1.0.4, 15.1.0.5, 15.1.1, 15.1.2, 15.1.2.1, 15.1.3, 15.1.3.1, 15.1.4, 15.1.4.1, 15.1.5, 15.1.5.1, 15.1.6, 16.1.0, 16.1.1, 16.1.2, 16.1.2.1, 16.1.2.2, 16.1.3, 17.0.0

Fixed In:
17.0.0.1, 16.1.3.1, 15.1.6.1, 14.1.5.1

Opened: Jan 18, 2022
Severity: 4-Minor

Symptoms

ASM policy import is successful on Active unit and it syncs to standby device, but "Apply changes" is displayed on the standby device policies page.

Impact

The peer (standby) unit needs to have the policies applied manually even though everything is set to auto-sync

Conditions

1. XML policy with learning enabled imported via TMSH. 2. Autosync with incremental sync enabled on device-group with ASM sync enabled.

Workaround

N/A

Fix Information

N/A

Behavior Change