Bug ID 672374: Support of Elliptic Curve Digital Signature Algorithm (ECDSA) for DNSSEC and SHA-384 DS Records

Last Modified: Apr 28, 2025

Affected Product(s):
BIG-IP TMOS(all modules)

Known Affected Versions:
12.1.0, 12.1.0 HF1, 12.1.0 HF2, 12.1.1, 12.1.1 HF1, 12.1.1 HF2, 12.1.2, 12.1.2 HF1, 12.1.2 HF2, 12.1.3, 12.1.3.1, 12.1.3.2, 12.1.3.3, 12.1.3.4, 12.1.3.5, 12.1.3.6, 12.1.3.7, 12.1.4, 12.1.4.1, 12.1.5, 12.1.5.1, 12.1.5.2, 12.1.5.3, 12.1.6, 14.0.0, 14.0.0.1, 14.0.0.2, 14.0.0.3, 14.0.0.4, 14.0.0.5, 14.0.1, 14.0.1.1

Fixed In:
17.1.0

Opened: Jul 05, 2017

Severity: 3-Major

Symptoms

The BIG-IP system does not support ECDSA, which is important for DNS software vendors to comply with DNS standards.

Impact

Won't be able to configure ECDSA keys.

Conditions

Zone creation with ECDSA algorithms

Workaround

None

Fix Information

Now able to configure the ECDSA keys.

Behavior Change

Guides & references

K10134038: F5 Bug Tracker Filter Names and Tips