Bug ID 611922: Policy sync fails with policy that includes custom CA Bundle.

Last Modified: Nov 07, 2022

Bug Tracker

Affected Product:  See more info
BIG-IP APM(all modules)

Known Affected Versions:
12.1.0, 12.1.0 HF1, 12.1.0 HF2, 12.1.1, 12.1.1 HF1, 12.1.1 HF2

Fixed In:
13.0.0, 12.1.2

Opened: Aug 19, 2016
Severity: 3-Major
Related Article:
K10644316

Symptoms

Policy sync fails with a policy that includes a custom CA Bundle with an error similar to the following: mcpd[6191]: 01070710:3: Database error (65), Can't set attribute value, type:certificate_summary attribute:name.

Impact

Policy sync fails.

Conditions

- Add a custom certificate bundle - Add it to a policy, e.g. create an LTM SSL CA profile and add it to the endpoint security check agent in the access policy. - Initiate a policy sync.

Workaround

Use a built-in certificate bundle on source device and sync the policy. Import the custom certificate bundle to all devices Replace the built-in certificate bundle with the custom one in the policy.

Fix Information

Policy sync now succeeds when the policy includes a custom certificate bundle.

Behavior Change