Bug ID 430819: AD/LDAP attributes improperly detected as printable

Last Modified: Apr 28, 2025

Affected Product(s):
BIG-IP APM(all modules)

Known Affected Versions:
10.1.0, 10.2.0, 10.2.1, 10.2.2, 10.2.3, 10.2.4, 11.0.0, 11.1.0, 11.2.0, 11.2.1, 11.3.0, 11.4.0, 11.4.1

Fixed In:
11.5.0, 11.4.1 HF2, 11.4.1 HF2, 11.3.0 HF9

Opened: Sep 17, 2013

Severity: 2-Critical

Related Article: K15066

Symptoms

When you do an AD / LDAP query you may see an incorrect attribute value. This happens because APD improperly detects that attribute as printable

Impact

AP failed, if rules depend on such attribute

Conditions

If the binary attribute contains printable ASCII chars followed by 0x00 and then printable chars again. e.g. binary attribute 0x3100323334 ('1\0234')

Workaround

None

Fix Information

AD/LDAP non-printable attributes are now detected as such.

Behavior Change

Guides & references

K10134038: F5 Bug Tracker Filter Names and Tips