Bug ID 686395: With DTLS version1, when client hello uses version1.2, handshake shall proceed

Last Modified: Nov 07, 2022

Bug Tracker

Affected Product:  See more info
BIG-IP TMOS(all modules)

Known Affected Versions:
12.1.0, 12.1.0 HF1, 12.1.0 HF2, 12.1.1, 12.1.1 HF1, 12.1.1 HF2, 12.1.2, 12.1.2 HF1, 12.1.2 HF2, 12.1.3, 12.1.3.1, 12.1.3.2, 12.1.3.3, 15.1.0, 15.1.0.1, 15.1.0.2, 15.1.0.3, 15.1.0.4, 15.1.0.5, 15.1.1, 15.1.2, 15.1.2.1, 15.1.3, 15.1.3.1, 15.1.4, 15.1.4.1

Fixed In:
15.1.5, 12.1.3.4

Opened: Sep 30, 2017
Severity: 3-Major

Symptoms

With DTLS version1, when client hello uses version1.2, handshake fails with error of :unsupported version".

Impact

DTLS functionalities.

Conditions

DTLS version1 handshake: Handshake version 1.0 . (0xfeff) Client hello version 1.2(0xfefd)

Workaround

N/A

Fix Information

In this case, we shall still proceed to perform handshake instead of bailing out with "unsupported version" error.

Behavior Change