Bug ID 963797: VPN Locked mode allowing external traffic initially

Last Modified: Apr 28, 2025

Affected Product(s):
APM-Clients APM(all modules)

Known Affected Versions:
7.2.1

Fixed In:
7.2.2, 7.2.1.1

Opened: Nov 10, 2020

Severity: 2-Critical

Symptoms

When the Edge client is initially established in Locked mode, clients are still allowed to connect to external sites.

Impact

External traffic is initially allowed during locked mode if DNS host resolution on the client fails or takes a long time.

Conditions

-- APM Windows Edge client is in locked mode -- The provided DNS list is not reachable

Workaround

None

Fix Information

Fixed an issue with allowing traffic during locked mode when dns resolution fails.

Behavior Change

Guides & references

K10134038: F5 Bug Tracker Filter Names and Tips