Bug ID 514567: If SWG-Transparent acts as SAML SP, then it produces RST after handling SAML Response from IdP

Last Modified: May 01, 2019

Bug Tracker

Affected Product:  See more info
BIG-IP APM(all modules)

Known Affected Versions:
12.1.0, 12.1.0 HF1, 12.1.0 HF2, 12.1.1, 12.1.1 HF1, 12.1.1 HF2, 12.1.2, 12.1.2 HF1, 12.1.2 HF2, 12.1.3, 12.1.3.1, 12.1.3.2, 12.1.3.3, 12.1.3.4, 12.1.3.5, 12.1.3.6, 12.1.3.7, 12.1.4, 12.1.4.1, 13.0.0, 13.0.0 HF1, 13.0.0 HF2, 13.0.0 HF3, 13.0.1, 13.1.0, 13.1.0.1, 13.1.0.2, 13.1.0.3, 13.1.0.4, 13.1.0.5, 13.1.0.6, 13.1.0.7, 13.1.0.8, 13.1.1, 13.1.1.1, 13.1.1.2, 13.1.1.3, 13.1.1.4, 13.1.1.5, 14.0.0, 14.0.0.1, 14.0.0.2, 14.0.0.3, 14.0.0.4

Opened: Mar 26, 2015
Severity: 3-Major

Symptoms

If SWG-Transparent with Captive Portal virtual server acts as SAML SP, then it produces RST after handling SAML Response from IdP.

Impact

User gets connection reset on Captive Portal virtual server after authentication on IdP.

Conditions

1. Configure SWG-Transparent (with Captive portal) to catch HTTP traffic. 2. Configure an virtual server as IdP. 3. Setup SWG Captive portal as SP. 4. Try to authenticate on SWG.

Workaround

None.

Fix Information

None

Behavior Change