Bug ID 1127725: Performance drop with the AES_CCM 128 cipher

Last Modified: Jan 20, 2023

Bug Tracker

Affected Product:  See more info
BIG-IP Install/Upgrade, LTM(all modules)

Known Affected Versions:
16.1.0, 16.1.1, 16.1.2, 16.1.2.1, 16.1.2.2, 16.1.3, 16.1.3.1, 16.1.3.2, 16.1.3.3

Opened: Jul 20, 2022
Severity: 2-Critical

Symptoms

On all iSeries platforms with Intel Coleto Creek Crypto chip present for Hardware cryptos like i10800, i11800, i5800, i7000, and i15800 platforms, when AES_CCM 128 ciphers such as TLS_RSA_WITH_AES_128_CCM are used, there will be a performance drop when compared to previous releases.

Impact

A performance drop of up to 30% and an increase in CPU utilization occurs.

Conditions

When AES_CCM 128 algorithm is configured to use.

Workaround

None

Fix Information

None

Behavior Change