Original Publication Date: 03/15/2012
Summary:
This release note documents the version 11.1.0 release of BIG-IP Global Traffic Manager and BIG-IP Link Controller.
You can apply the software upgrade to systems running software versions 10.x. For a list of supported platforms, see SOL9412: The BIG-IP release matrix. For information about which platforms support which module combinations, see SOL10288: BIG-IP software and platform support matrix.
Contents:
For a comprehensive list of documentation that is relevant to this release, refer to the BIG-IP GTM 11.1.0 Documentation page and the BIG-IP Link Controller 11.1.0 Documentation page.
There are no new features specific to Global Traffic Manager/Link Controller.
You can now configure DNS Express on BIG-IP Global Traffic Manager (GTM) to mitigate distributed denial-of-service attacks (DDoS) and improve performance of both the local BIND server on the BIG-IP system and any back-end DNS servers.
This release provides support for BIG-IP GTM on the VIPRION platforms.
BIG-IP GTM is now available as a Virtual Edition (VE).
This release provides support for IP Anycast for DNS services on BIG-IP GTM. This configuration helps mitigate distributed denial-of-service attacks (DDoS), reduce DNS latency, improve the scalability of your network, and assist with global traffic management.
With this release, you can configure BIG-IP Global Traffic Manager (GTM) to perform intelligent probing of your network resources to determine whether the resources are up or down. This allows you to specify which BIG-IP systems probe specific servers for health and performance data.
This release provides default system certificates with a ten year initial life span on BIG-IP GTM.
You can now deploy BIG-IP GTM on a network where BIG-IP Local Traffic Manager (LTM) systems are configured with route domains.
This document lists very basic steps for installing the software. BIG-IP System: Upgrading Active/Standby Systems and BIG-IP System: Upgrading Active-Active Systems contain details and step-by-step instructions for completing an upgrade.
Before you begin:
To install the software, use one of the methods described here.
| Install method | Command |
|---|---|
| Format for volumes, migrate source configuration to destination | image2disk --format=volumes <downloaded_filename.iso> |
| Format for volumes, preserve destination configuration (for fully 10.x environments) | image2disk --nomoveconfig --format=volumes <downloaded_filename.iso> |
| Install without formatting (not for first-time 10.x installation) | bigpipe software desired HD.<n.n> version 10.x build <nnnn.n>.iso product BIG-IP |
| Format for partitions (for mixed 9.x and 10.x environments) | image2disk --format=partitions <downloaded_filename.iso> |
| Install from the browser-based Configuration utility | Use the Software Management screens in a web browser. |
This document lists very basic steps for installing the software. BIG-IP System: Upgrading Active/Standby Systems and BIG-IP System: Upgrading Active-Active Systems contain details and step-by-step instructions for completing an upgrade.
Your upgrade process differs depending on the version of software you are currently running. Software version 10.x introduced the ability to run multiple modules based on platform. The number and type of modules that can be run simultaneously is strictly enforced through licensing. For more information, see SOL10288: BIG-IP software and platform support matrix.
When you upgrade from version 10.x software, you use the Software Management screens in the Configuration utility to complete these steps. To open the Software Management screens, in the navigation pane of the Configuration utility, expand System, and click Software Management. For information about using the Software Management screens, see the online help.
You cannot roll forward a configuration directly to this version from BIG-IP version 4.x, or from BIG-IP versions 9.0.x through 9.6.x. You must be running version 10.x software. For details about upgrading to those versions, see the release notes for the associated release.
| Bug | Description |
|---|---|
| ID 355937 | This release fixes validation for pool members. They will now reference the pool member (rather than incorrectly referencing the backing VS). |
| ID 361548 | After the first install on a cluster, an rndc reload may be necessary. This fix allows that to happen. |
| ID 364437 | Link Controller GUI: removed the erroneous table columns from wideip member stats and wideip details stats tables. |
| ID 364918 | Syncing configuration changes from a Link Controller to a Global Traffic Manager in the same sync group no longer causes the monitors to fail to load on the GTM. |
| ID 365582 | A GTM iRule that refers to a pool without specifying the full path (e.g., [pool pool1]) will now work correctly when that pool is found in multiple folders. Correct behavior is to always choose the pool in the wideip's folder, and to dynamically switch if a pool (with the same name as in the iRule) is added/deleted in that folder. |
| ID 366165 | Configuration changes to any/every GTM object now triggers the configuration file to be saved. |
| ID 367082 | This release corrects an issue where gtmd could grow excessively. |
| ID 367836 | This release corrects an issue involving excessive memory usage and crash/core when loading GTM configs with large numbers of virtual servers with topology records. |
| ID 368715 | Corrected a condition where importing a ucs file generated from a previous release with depends_on in the configuration would fail. |
| Bug | Description |
|---|---|
| 226783 | [Global Traffic Manager] Global Traffic Manager now correctly performs name resolution for the IPv6 addresses, and BIND responds correctly to DNS requests against IPv6 self IP addresses. |
| 223590, CR130729 | [Global Traffic Manager] This release provides the functionality for clearing link statistics. |
| 343798 | [Global Traffic Manager] This version of the software adds two read-only fields to gtm_dnssec_key_generation: creator and key_tag. The value of creator is a string representing the host name of the BIG-IP system that created the DNSSEC key generation. The value of key_tag is a hash calculated from the DNSKEY resource record (RR) for that generation. You can use these fields to help debug DNSSEC deployments. In addition, this release provides better constraint on which generations can rollover, which helps mitigate a potential race condition. Finally, this release provides additional debug logging. |
| 348726 | [Global Traffic Manager] The online help page for custom GTM SNMP monitors has been provided. |
This release contains the following known issues.
| Bug | Description |
|---|---|
| ID 363142 | [Link Controller] global Auto-Discovery can be disabled while having a link with bigip_link monitor |
| ID 364774 | You have to create a redundant-bigip server object via tmsh for LC by hand. |
| ID 363134 | Links get auto-discovered when global Auto-Discovery is disabled and Link Discovery is on. |
| ID 356586 | BIND v9.7, new in v11.0.0, requires an A (IP address) record for a Nameserver (NS) entry in its configuration. In the past, a FQDN or CNAME for the NS was sufficient. This means that upgrades of BIND configurations to v11.0.0 might fail to load if such an A record is not present (the symptom will be zrd stuck in a restart loop). The best solution is to create an A record for the NS *before* upgrading. |
| ID 225759 | When you upgrade a BIG-IP Global Traffic Manager synchronization group to version 10.1.0 or later, the master key is not synchronized to all members within the synchronization group. For step-by-step instructions to fix this known issue, see SOL11868 on AskF5. |
| ID 343030 | "The named process might log the following error in daemon.log: Oct 22 09:44:24 local/localhost err named[8832]: 22-Oct-2010 09:44:24.278 general: error: managed-keys-zone ./IN/external: loading from master file 3c4623849a49a53911c4a3e48d8cead8a1858960bccdea7a1b978d73ec2f06d7.mkeys failed: file not found Although it reported the error, the daemon is up and running, so you can safely ignore the error." |
| ID 361650 | "Starting with 11.0.0, it takes no less than 15 seconds for BIG-IP GTM to save any configuration change, regardless of whether it is made in the Configuration utility or in tmsh." |
| ID 344048 | [Behavior Change] In previous releases, BIG-IP Global Traffic Manager set the time-to-live (TTL) on a name server (NS) record generated by a wide IP to 500. The system now sets the TTL on an NS record generated by a wide IP to 0 (zero) to ensure that the client does not retain the value, but instead obtains the value from the authoritative name server. |
| ID 346551 | "[Global Traffic Manager] BIND 9.7.3 requires behavior change BIG-IP Global Traffic Manager now includes BIND version 9.7.3. This version of BIND requires that when a zone is created with a name server (NS) record that is contained in the zone, that NS record must have a matching A record. With this release, when you create a wide IP that requires the creation of a zone, BIG-IP GTM automatically creates not only an NS record, but also an A record for the NS record that points to the local host. The NS and A records are given a time-to-live (TTL) of 0 (zero). The administrator should change the NS record to match the desired NS record." |
| ID 360270 | Resolv::lookup -ptr and Name::lookup -ptr are not caching returned records, so the tmm must perform a query each time. This could result in slower than expected performance. |
| ID 355018 | GTM logging does not put the event name in the output. This has always been the case, so it is a widely known issue. |
| Phone: | (206) 272-6888 |
| Fax: | (206) 272-6802 |
| Web: | http://support.f5.com |
| Email: | support@f5.com |
For additional information, please visit http://www.f5.com.