Bug ID 2186825: LDAP/LDAPS remote login fails after partition failover

Last Modified: Dec 19, 2025

Affected Product(s):
F5OS F5OS-C(all modules)

Known Affected Versions:
F5OS-C 1.8.0, F5OS-C 1.8.1, F5OS-C 1.8.2

Opened: Dec 17, 2025

Severity: 3-Major

Symptoms

Remote login to a partition using LDAP/LDAPS can fail after a (partition) failover if the controller that is being failed over to hasn't been active since it last restarted. The login fails with the message, "No valid role group found in user groups."

Impact

Remote users are unable to login after a partition failover.

Conditions

-- Chassis-based system. -- LDAP or LDAPS authentication is enabled. -- Remote users are configured with Unix Attributes set to "false". -- A partition failover has occurred. -- The new active controller for the partition has not been active since it was last restarted (such as after an upgrade).

Workaround

Restart the authentication manager and user manager containers of the partition after the failover.

Fix Information

None

Behavior Change

Guides & references

K10134038: F5 Bug Tracker Filter Names and Tips