Bug ID 654513: APM daemon crashes when the LDAP query agent returns empty in its search results.

Last Modified: Nov 07, 2022

Bug Tracker

Affected Product:  See more info
BIG-IP APM(all modules)

Known Affected Versions:
11.6.0, 11.6.0 HF1, 11.6.0 HF2, 11.6.0 HF3, 11.6.0 HF4, 11.6.0 HF5, 11.6.0 HF6, 11.6.0 HF7, 11.6.0 HF8, 11.6.1, 11.6.1 HF1, 11.6.1 HF2, 11.6.2, 11.6.2 HF1, 12.0.0, 12.0.0 HF1, 12.0.0 HF2, 12.0.0 HF3, 12.0.0 HF4, 12.1.0, 12.1.0 HF1, 12.1.0 HF2, 12.1.1, 12.1.1 HF1, 12.1.1 HF2, 12.1.2, 12.1.2 HF1, 12.1.2 HF2, 13.0.0, 13.0.0 HF1, 13.0.0 HF2, 13.0.0 HF3

Fixed In:
13.1.0, 13.0.1, 12.1.3, 11.6.3

Opened: Mar 30, 2017
Severity: 3-Major
Related Article:
K11003951

Symptoms

APM daemon crashes when the LDAP query agent returns no search results.

Impact

APM daemon crashes, need to restart RBA and WebSSO. This is a very rarely encountered issue.

Conditions

This issue occurs when all of the following conditions are met: -- Your BIG-IP access profile access policy is configured with an AD Auth agent. -- The access policy is configured with an LDAP query agent. -- A user successfully authenticates to the access profile. -- The LDAP query agent returns no query results.

Workaround

Add LDAP Auth agent before the LDAP query to the existing policy. Note: Adding the extra agent, LDAP Auth agent, in the policy will preserve the functionality and features, enabling the policy to fail in LDAP Auth agent, instead of crash in LDAP Query agent.

Fix Information

Now APM daemon no longer crashes when the LDAP query agent returns a specific type of null result from its search.

Behavior Change