Bug ID 611922: Policy sync fails with policy that includes custom CA Bundle.

Last Modified: Sep 13, 2023

Affected Product(s):
BIG-IP APM(all modules)

Known Affected Versions:
12.1.0, 12.1.1

Fixed In:
13.0.0, 12.1.2

Opened: Aug 19, 2016

Severity: 3-Major

Related Article: K10644316

Symptoms

Policy sync fails with a policy that includes a custom CA Bundle with an error similar to the following: mcpd[6191]: 01070710:3: Database error (65), Can't set attribute value, type:certificate_summary attribute:name.

Impact

Policy sync fails.

Conditions

- Add a custom certificate bundle - Add it to a policy, e.g. create an LTM SSL CA profile and add it to the endpoint security check agent in the access policy. - Initiate a policy sync.

Workaround

Use a built-in certificate bundle on source device and sync the policy. Import the custom certificate bundle to all devices Replace the built-in certificate bundle with the custom one in the policy.

Fix Information

Policy sync now succeeds when the policy includes a custom certificate bundle.

Behavior Change

Guides & references

K10134038: F5 Bug Tracker Filter Names and Tips