Loading...
Loading...
The tunnel stops working after initially starting with no problem. The BIG-IP will send a bad KE (Key Exchange) Payload when rekeying the IKE SA with ECP.
IPsec tunnels stop working for periods of time.
-- IKEv2 -- ECP PFS -- Peer attempts to re-key IKE SA (CREATE_CHILD SA) over existing IKE SA.
Do not use ECP for PFS.
ECP will work correctly when rekeying.
Click on a version to see all relevant bugs
F5 Integration
Learn more about where this data comes from
BugZero Plan
Streamline upgrades with automated vendor bug scrubs
BugZero Prevent
Wish you caught this bug sooner? Get proactive today.