Last Modified: Sep 13, 2023
Affected Product(s):
BIG-IQ Platform
Known Affected Versions:
7.0.0.1, 7.0.0.2
Opened: Sep 04, 2019 Severity: 3-Major
If client certificate authentication is enabled for BIG-IQ v7.0.0, and you upgrade BIG-IQ, the webd.conf file gets overridden/replaced. This means the client certificate authentication settings are lost, and authentication no longer works correctly.
Authentication no longer works correctly.
Client certificate authentication is enabled on BIG-IQ v7.0.0.
You can avoid this issue by disabling client certificate authentication before you upgrade BIG-IQ, then re-enabling it back after the upgrade. Alternatively, if BIG-IQ v7.0.0 client certificate authentication is not disabled before the upgrade, ssh into the BIG-IQ and type the following command at the shell prompt: client-cert-auth -x This resets BIG-IQ authentication to the default username/password authentication using the local authentication provider.
None