Known issues

The following known issues apply to this release. Workarounds are noted where applicable.

WAF policy scheme differentiation required for enforcement

When API Security applies a block, two policy entries are created — one for HTTP and one for HTTPS. If the WAF policy on BIG-IP is not configured to differentiate between HTTP and HTTPS schemes, the policy will fail to apply.

Workaround: Configure the WAF policy to differentiate between HTTP and HTTPS schemes, or use a policy based on the Fundamental template. A runtime fix is planned for a future release.

Upgrade supported only on Docker Compose

The --upgrade and --upgrade --dry-run modes of the installation script are supported only for Docker Compose deployments in this release. For Kubernetes deployments, follow the upgrade procedure provided with the Helm package.