Bug ID 1900509: Inherited IP exceptions for non-zero default route domains are not deleted in child policies

Last Modified: Jun 19, 2025

Affected Product(s):
BIG-IP ASM(all modules)

Known Affected Versions:
17.1.2, 17.1.2.1, 17.1.2.2

Opened: Apr 01, 2025

Severity: 4-Minor

Symptoms

Inherited IP exceptions for non-zero default route domains are not deleted in child policies

Impact

Leftover ip addresses remain in the child policies.

Conditions

A parent policy exists in a partition that has a non-zero default route domain, and an ip address exception is added to the policy. A child policy then inherits from this parent policy, and then the ip address is deleted from the parent policy.

Workaround

The inheritance needs to be disabled and re-enabled for the IP Address section, and the leftover elements must be removed manually from each child.

Fix Information

None

Behavior Change

Guides & references

K10134038: F5 Bug Tracker Filter Names and Tips