Bug ID 459024: Error L4 packets encounter configured whitelist entries that do not match the protocol

Last Modified: Apr 28, 2025

Affected Product(s):
BIG-IP AFM(all modules)

Known Affected Versions:
11.5.3, 11.5.3 HF1

Fixed In:
11.6.0, 11.5.3 HF2

Opened: Apr 25, 2014

Severity: 3-Major

Symptoms

For error vectors, the system matches only VLAN keys and not the associated protocols.

Impact

An error packet's protocol is not compared with configured whitelist protocol entries, so they are not getting dropped.

Conditions

If an error packet is sent that should be dropped.

Workaround

None.

Fix Information

Error packet's protocol will now be matched with the specified protocol in the whitelist entries, so appropriate action will be taken.

Behavior Change

Guides & references

K10134038: F5 Bug Tracker Filter Names and Tips