The BIG-IP system inserts a cookie into the HTTP response, by default, is named BIGipServer<pool_name> and the cookie value contains the encoded IP address and port of the destination server.
This behavior can cause disclose local IP address of Web Server.
Reference:
ruby bigip.rb [-h] [-u URL_TARGET] [-d BIGIP_COOKIE_VALUE]
-d Decode the cookie value.
-h Print a summary of the usage.
-u Get the BIGip value in target and decode.
guest@hostname:~$ ruby bigip.rb -d 1677787402.36895.0000
IP address found:
IP Address : 10.33.70.12
Port : 443
guest@hostname:~$ ruby bigip.rb -u https://example.com/
BIGip cookie: 1677787402.36895.0000
IP address found:
IP Address : 10.33.70.12
Port : 443