Bug ID 451233: Radius authentication fails if the NAS IP address is configured with route domain

Last Modified: Nov 07, 2022

Bug Tracker

Affected Product:  See more info
BIG-IP APM(all modules)

Known Affected Versions:
11.4.0, 11.4.1, 11.5.0, 11.5.1, 11.5.1 HF1, 11.5.1 HF10, 11.5.1 HF11, 11.5.1 HF2, 11.5.1 HF3, 11.5.1 HF4, 11.5.1 HF5, 11.5.1 HF6, 11.5.1 HF7, 11.5.1 HF8, 11.5.1 HF9, 11.5.10, 11.5.2, 11.5.2 HF1, 11.5.3, 11.5.3 HF1, 11.5.3 HF2, 11.5.4, 11.5.4 HF1, 11.5.4 HF2, 11.5.4 HF3, 11.5.4 HF4, 11.5.5, 11.5.6, 11.5.7, 11.5.8, 11.5.9

Fixed In:
11.6.0, 11.4.1 HF4, 11.4.0 HF8

Opened: Mar 05, 2014
Severity: 3-Major
Related Article:
K16522

Symptoms

If an AAA RADIUS server is configured on a partition other than /Common with a default route domain, authentication will fail.

Impact

Radius authentication fails.

Conditions

Radius authentication fails when radius configuration has NS IP Address with route domain (i.e. x.x.x.x/%RD) format.

Workaround

This issue has no workaround at this time.

Fix Information

The APD and ACCTD processes now parse any IP address that includes a route domain ID as a suffix.

Behavior Change