[Oct 11, 2023] Get Free Updates Up to 365 days On Developing 101 Braindumps [Q68-Q87]

Share

[Oct 11, 2023] Get Free Updates Up to 365 days On Developing 101 Braindumps

Best Quality F5 101 Exam Questions


The F5 101 exam covers a wide range of topics, including the basics of networking, application protocols, load balancing, SSL offloading, and security. It is intended for individuals who are interested in pursuing a career in ADN or for those who are already working in this field and want to enhance their knowledge and skills.

 

NEW QUESTION # 68
What should the BIG-IP Administrator configure to perform SSL offloading when the certificate is already imported on the BIG-IP device?

  • A. HTTP profile using server SSL profile
  • B. Virtual server using server SSL profile configured to use the certificate
  • C. HTTP profile using client SSL profile
  • D. Virtual server using client SSL profile configured to use the certificate

Answer: D


NEW QUESTION # 69
Complete the statement below by choosing the correct word or phrase to complete the sentence.By identifying IP addresses and security categories associated with malicious activity, the BIG-IP________service can incorporate dynamic lists of threatening IP addresses into the BIG-IP platform, adding context topolicy decisions.

  • A. iRules
  • B. Edge Client
  • C. LTM
  • D. iApps
  • E. IP intelligence

Answer: E


NEW QUESTION # 70
Which of the following statements best describes the ARX architecture?

  • A. The ARX's split path architecture has a data path that handles the most common operations, and a control path that handles other operations requiring deeper inspection and updating of the index
  • B. The ARX's architecture has redundancy built in, allowing a single ARX to be deployed in most use cases which provides a huge cost savings to customers
  • C. All of the above
  • D. it is a software agent that installs on the storage device

Answer: A

Explanation:
Explanation/Reference:
Explanation:


NEW QUESTION # 71
ASM offers the most extensive, effective, and simplest to configure CSRF protection in theWAF market.

  • A. True
  • B. False

Answer: A


NEW QUESTION # 72
What command sends an "Echo Request' message and expects an "Echo Reply" message?

  • A. tcpdump
  • B. netstal
  • C. echo
  • D. ping

Answer: D


NEW QUESTION # 73
Assuming there are open connections through an active system's NAT and a failover occurs, by default, what happens to those connections?

  • A. The "Mirror" option must be chosen on the NAT and the setting synchronized prior to the connection establishment.
  • B. All open connections are lost, but new connections are initiated by the newly active BIG-IP, resulting in minimal client downtime.
  • C. Long-lived connections such as Telnet and FTP will be maintained while short-lived connections such as HTTP will be lost.
  • D. All open connections will be maintained.
  • E. All open connections will be lost.

Answer: D


NEW QUESTION # 74
What is the advantage of specifying three load balancing methods when load balancing within pools?

  • A. Specifying three methods allows the GTM System to choose the optimal method for each name resolution.
  • B. Specifying three methods allows the GTM System alternate methods if insufficient data is available for other methods.
  • C. Specifying three methods allows the GTM System to rotate between the three methods so that no one method is used too often.
  • D. Specifying three methods allows the GTM System to use all three methods simultaneously.

Answer: B

Explanation:
Explanation/Reference:


NEW QUESTION # 75
Which four are GTM server static load balancing modes? (Choose four.)

  • A. Return to DNS
  • B. Drop Packet
  • C. Round Robin
  • D. Packet Rate
  • E. Static Persist
  • F. CPU

Answer: A,B,C,E

Explanation:
Explanation/Reference:
Explanation:
Global Traffic Manager supports the following static load balancing modes:
Drop Packet
Fallback IP
Global Availability
None
Ratio
Return to DNS
Round Robin
Static Persist
Topology


NEW QUESTION # 76
Could an iRule perform persistence based on a cookie?

  • A. No. Cookie persistence is only is based on a cookie persistence profile.
  • B. Yes. An iRule could be desiged to persist based on the contents of a cookie.
  • C. Yes An iRule could be designed to persist based on the contents of a cookie.
  • D. No. iRules cannot affect persistence.

Answer: B


NEW QUESTION # 77
Which item is NOT a function of a properly deployed and configured ASM?

  • A. Detects attacks
  • B. Provides security agility
  • C. Provides protection visibility
  • D. Stops hackers from attacking

Answer: D


NEW QUESTION # 78
What is a common use of an iRule?

  • A. to create a reuseable application delivery template
  • B. to modify application traffic between the client and server
  • C. to integrate a BIG IP into an enterprise orchestration tool
  • D. to create an accelerated session between two BIG-IP devices

Answer: B


NEW QUESTION # 79
An administrator configures secure remote access to a server's shell Given the netstal output, what did the administrator configure?

  • A. teinetd. allowing connections only from IP address 10 .1. 10.46
  • B. teinetd listening on IP address 10.1. 10. 46
  • C. sshd. listening on IP address 10. 1. 10.46
  • D. sshd. allowing connections only from IP address 10.1. 10. 46

Answer: C

Explanation:
Although it appears telnet is configured in this example (!) it is listening on all IP addresses of the system while ssh (port 22) is only on the 10.1.10.46 address.


NEW QUESTION # 80
A site wishes to perform source address translation on packets from some clients but not others. The determination is not based on the client's IP address, but on the virtual servers their packets arrive on. What could best accomplish this goal?

  • A. The decision to perform source address translation is always based on VLAN. Thus, the goal cannot be achieved.
  • B. Some virtual servers could be associated with SNAT pools and others not associated with SNAT pools.
  • C. A SNAT for all addresses could be defined, and then disable the SNAT processing for select VLANs.
  • D. The decision to perform source address translation is always based on a client's address (or network).
    Thus, this goal cannot be achieved.

Answer: B


NEW QUESTION # 81
The Policy Builder benefits include:

  • A. Very low administrative impact
  • B. Doesn't require in depth web application knowledge
  • C. Only requires limited ASM knowledge
  • D. All of the above

Answer: D

Explanation:
Explanation/Reference:


NEW QUESTION # 82
Which of the following user roles have access to make changes to security policies? (Choose two.)

  • A. Guest
  • B. Administrator
  • C. Web Application Security Editor
  • D. Operator

Answer: B,C


NEW QUESTION # 83
Assuming there are open connections through an active system's virtual servers and a fail-over occurs, by default, what happens to the connections.

  • A. Long-lived connections such as Telnet and FTP are maintained, but short-lived connections such as HTTP are lost.
  • B. When persistence mirroring is enabled, open connections are maintained even if a fail-over occurs.
  • C. All open connections are lost, but new connections are initiated by the newly active BIG-IP, resulting in minimal client downtime.
  • D. All open connections are maintained.
  • E. All open connections are lost.

Answer: E


NEW QUESTION # 84
ASM provides antivirus protection by:

  • A. None of the above
  • B. Extracting files being uploaded and sending them to an AV system via ICAP
  • C. Using IP Penalty enforcement to block requests from hackers IPs
  • D. Running a local antivirus program on the BIG-IP

Answer: B

Explanation:
Explanation/Reference: Supported ICAP Servers in TMOS 11.5:


NEW QUESTION # 85
Which IP subnet mask can be used to send traffic to all network nodes?

  • A. 192. 168. 0. 11/30
  • B. 192 168.0. 255/23
  • C. 172. 16. 1255/22
  • D. 192. 168. 1. 11/31

Answer: A


NEW QUESTION # 86
A standard virtual server has been associated with a pool with multiple members.
Assuming all other settings are left at their defaults, which statement is always true concerning traffic processed by the virtual server.

  • A. The server IP address is unchanged between the client-side connection and the server-side connection.
  • B. The TCP ports used in the client-side connection are the same as the TCP ports server-side connection.
  • C. The client IP address is unchanged between the client-side connection and the server-side connection.
  • D. The IP addresses used in the client-side connection are the same as the IP addresses used in the server-side connection.

Answer: C


NEW QUESTION # 87
......

F5 Exam Practice Test To Gain Brilliante Result: https://www.prepawaypdf.com/F5/101-practice-exam-dumps.html

Tested Material Used To 101: https://drive.google.com/open?id=12gGr3SHFiC3gAaI5HPM9gFvPXxc-aD-a