Loading...
Loading...
A very long entry (exceeding the maximum length allowed by internet stndards) in a data-group used for SSL Forward Proxy Bypass/Intercept hostname list may cause TMM to crash.
Traffic disrupted while tmm restarts.
All of the below conditions have to be met: -- A virtual server uses SSL profile -- This SSL profile has Forward Proxy enabled. -- The SSL profile has Forward Proxy Bypass enabled. -- The SSL profile uses Hostname Bypass and/or Hostname Intercept data-group. -- Anny to the data-groups contains entries which are longer than 255 characters.
Make sure all entries in the data-group used for intercept/bypass hostnanme list do not exceed 255 characters. According to RFC 1035 section 2.3.4, longer hostnames are not valid.
TMM no longer crashes when hostname data-group entries are too long. Instead there is an error message logged: 01260000:2: Profile <affected SSL profile name>: could not load hostname bypass/intercept list However, incorrect entries need to be fixed as they are not valid anyway and make the data-group to be ignored.
Click on a version to see all relevant bugs
F5 Integration
Learn more about where this data comes from
BugZero Plan
Streamline upgrades with automated vendor bug scrubs
BugZero Prevent
Wish you caught this bug sooner? Get proactive today.