Operational Defect Database

BugZero found this defect 1643 days ago.

WatchGuard Technologies | kA10H000000g4bRSAQ

Reverse Proxy fails with blank page displayed for some applications

Last update date:

1/21/2022

Affected products:

Firebox M200

Firebox M300

Firebox M270

Firebox M370

Firebox M470

Firebox M570

Firebox M670

Firebox M290

Firebox M390

Firebox M400

Firebox M500

Firebox M440

Affected releases:

All

Fireware

12.x

12.5.x

Fixed releases:

v12.7.2

Description:

Issue

With some applications, the reverse proxy fails to display a page for users, or users see the error message: net::ERR_CONTENT_LENGTH_MISMATCHThis occurs because of a buffer overflow error with the reverse proxy. To confirm that you are experiencing a buffer overflow error: Set the Diagnostic Log Level for Security Subscriptions > Access Portal to Debug. For instructions, see Set the Diagnostic Log Level. In Firebox System Manager or Web UI, open Traffic Monitor. For instructions, see Traffic Monitor. If your network environment is large or extremely busy, the content of Traffic Monitor might scroll too quickly to identify this log message. In this case, you can use a log tool such as WatchGuard Cloud. To learn more, see About Firebox Logging and NotificationTry to get access to an application that fails with reverse proxy. Review the log messages that appear on the Traffic Monitor > Diagnostic tab. If this is the issue, you see a log message that looks like this: 2019-11-15 13:52:10 wrapper nginx: 2019/11/15 13:52:10 [crit] 6164#0: *140605 pwritev() "/var/run/nginx/nginx_proxy/0000002612" has written only 12288 of 32768 while reading upstream, client: 207.236.65.241, server: example.example.net Debug

Workaround/Solution

Run this CLI command to disable buffering: no access-portal url-mappings proxy-buffering enable

Additional Resources / Links

Share:

BugZero® Risk Score

What's this?

Coming soon

Status

Resolved

Learn More

Search:

...