Bug ID 421117: Using SAML can lead to a TMM panic on 2000/4000

Last Modified: Nov 22, 2021

Affected Product(s):
BIG-IP LTM(all modules)

Known Affected Versions:
11.3.0, 11.4.0

Fixed In:
11.5.0, 11.4.1, 11.4.0 HF3, 11.3.0 HF6

Opened: May 14, 2013

Severity: 2-Critical

Related Article: K14925

Symptoms

If SAML is configured on a BIG-IP 2000/4000, it can lead to a TMM panic.

Impact

TMM panics and restarts. The system logs the panic in the tmm log files and posts the message to the console.

Conditions

SAML SP configured on the BIG-IP system with signature verification enabled.

Workaround

To work around this issue, disable hardware acceleration with the following commands: echo "device exclude 07:00.0;device exclude 08:00.0" >> /config/tmm_init.tcl bigstart restart tmm

Fix Information

Handling SSL traffic with a SAML Access profile on a BIG-IP 2000-series or 4000-series platform no longer causes TMM to core.

Behavior Change

Guides & references

K10134038: F5 Bug Tracker Filter Names and Tips