Last Modified: Sep 13, 2023
Affected Product(s):
BIG-IP LTM
Known Affected Versions:
12.1.0, 12.1.1, 12.1.2, 12.1.3, 12.1.3.1, 12.1.3.2, 12.1.3.3, 12.1.3.4, 12.1.3.5, 12.1.3.6, 12.1.3.7, 12.1.4, 12.1.4.1, 12.1.5, 12.1.5.1, 12.1.5.2, 12.1.5.3, 12.1.6, 13.0.0, 13.0.0 HF1, 13.0.0 HF2, 13.0.0 HF3, 13.0.1, 13.1.0, 13.1.0.1, 13.1.0.2, 13.1.0.3, 13.1.0.4, 13.1.0.5, 13.1.0.6, 13.1.0.7, 13.1.0.8, 13.1.1, 13.1.1.2, 13.1.1.3, 13.1.1.4, 13.1.1.5, 13.1.3, 13.1.3.1, 13.1.3.2, 13.1.3.3, 13.1.3.4, 13.1.3.5, 13.1.3.6, 13.1.4, 13.1.4.1, 13.1.5, 13.1.5.1
Opened: Nov 22, 2016 Severity: 3-Major
IPsec in HA: config sync from the Standby BIG-IP system to the Active one resets tunnels.
IPsec tunnels are reset on the Active system.
IPsec in high availability (HA) configurations. Performing config sync from Standby to Active.
Use "Auto Sync" on the Device Group and never use "Overwrite Configuration" when manually syncing. Note: Although preparing a configuration on Standby and syncing to Active is not prohibited, it is not recommended. The expected operation is to make all configuration changes on the Active BIG-IP system, and perform config sync to the Standby one.
None