Bug ID 693563: No warning when LDAP is configured with SSL but with a client certificate with no matching key

Last Modified: Dec 20, 2019

Bug Tracker

Affected Product:  See more info
BIG-IP Install/Upgrade, LTM(all modules)

Known Affected Versions:
12.1.0, 12.1.0 HF1, 12.1.0 HF2, 12.1.1, 12.1.1 HF1, 12.1.1 HF2, 12.1.2, 12.1.2 HF1, 12.1.2 HF2, 12.1.3,,,,,,,, 12.1.4,, 12.1.5, 13.0.0, 13.0.0 HF1, 13.0.0 HF2, 13.0.0 HF3, 13.0.1, 13.1.0,,,,,,,,, 13.1.1,,,,,, 13.1.3,,, 14.0.0,,,,,, 14.0.1,, 14.1.0,,,,,,, 14.1.2,,,

Opened: Nov 08, 2017
Severity: 2-Critical
Related AskF5 Article:


When LDAP auth is configured with SSL: - Authentication attempts fail - Packet captures between the BIG-IP system and the LDAP server show the BIG-IP system sending FIN after TCP handshake.


LDAP auth fails. There is no warning that the auth failed.


LDAP auth is configured with SSL with client cert set but no matching key.


Configure a key that matches the specified client certificate.

Fix Information


Behavior Change