Last Modified: Oct 24, 2023
Affected Product(s):
BIG-IP APM
Known Affected Versions:
15.1.5, 15.1.5.1, 15.1.6, 15.1.6.1, 15.1.7, 15.1.8, 15.1.8.1, 15.1.8.2, 15.1.9, 15.1.9.1, 15.1.10, 15.1.10.2, 16.1.0, 16.1.1, 16.1.2, 16.1.2.1, 16.1.2.2, 16.1.3, 16.1.3.1, 16.1.3.2, 16.1.3.3, 16.1.3.4, 16.1.3.5, 16.1.4, 16.1.4.1
Opened: Jun 07, 2022 Severity: 3-Major
If you configure APM as an IdP and Create a Per-Request Policy that includes a subroutine with a "Confirm Box", the POST containing the SAML Auth Request is lost and APM reports: err tmm1[27543]: 014d1080:3: /Common/IdP_ap:Common:869ab83f:SAML SSO: Authn Request has no SAMLRequest err tmm1[27543]: 014d1224:3: /Common/IdP_ap:Common:869ab83f:SAML SSO: Error (12) extracting SAML Data from Request
Can't use a checkbox in a PRP subroutine
-- APM configured as an IdP -- PRP with Subroutine containing a Confirm Box
1. Use Redirect Binding instead of POST Binding. 2. Do not use a check box in the subroutine
None