Bug ID 453531: Multidomain SSO sends resets on secondary authentication domains

Last Modified: Nov 07, 2022

Affected Product(s):
BIG-IP APM(all modules)

Known Affected Versions:
11.4.1, 11.5.0, 11.5.1, 11.5.1 HF1, 11.5.1 HF10, 11.5.1 HF11, 11.5.1 HF2, 11.5.1 HF3, 11.5.1 HF4

Fixed In:
11.6.0, 11.5.1 HF5

Opened: Mar 21, 2014

Severity: 3-Major

Related Article: K15913

Symptoms

The RBA plugin sends a reset when attempting to access a secondary authentication domain: /var/log/ltm: Internal error (APM::RBA requested abort (trans end error))

Impact

Multidomain SSO is effectively unusable, since you can only access the primary domain.

Conditions

Any configuration of LTM+APM multidomain SSO seems to be affected. Forward proxy deployments, such as Secure Web Gateway, do not appear to be affected.

Workaround

There is no workaround at this time. Single-domain authentication still works.

Fix Information

Multidomain SSO no longer resets on secondary authentication domains.

Behavior Change

Guides & references

K10134038: F5 Bug Tracker Filter Names and Tips