option
Cuestiones
ayuda
daypo
buscar.php

big_ip 301a

COMENTARIOS ESTADÍSTICAS RÉCORDS
REALIZAR TEST
Título del Test:
big_ip 301a

Descripción:
big_ip 301a

Fecha de Creación: 2025/05/21

Categoría: Otros

Número Preguntas: 173

Valoración:(0)
COMPARTE EL TEST
Nuevo ComentarioNuevo Comentario
Comentarios
NO HAY REGISTROS
Temario:

An ITM Specialist has the configuration shown: The LTM Specialist needs to create a new virtual server in part B. Which virtual address(es) should be used for the new virtual server?. 10.100.0.1 and.10.120.0.1. 10.90.0.1 and 10.12.0.1. 10.120.0.1 only. 10.90.0.1 and 10.100.0.1.

An LTM device an application that requires all connections to be secured via SSL The device must verify that request contain a specific cookie before allowing the request to be sent to the pool member. Which virtual server type should an LTM Specialist configure on the LTM device?. Stateless. Performance (HTTP). Standard. Performance (Layer 4). Forwarding (IP).

An LTM Specialist needs to force only FTP traffic, sourced from subnet 10.10.10.0/24 to virtual server 10.10.20.1 to the new FTP1 server. The following virtual servers are configured on the LTM device: Traffic sourced from 10.10.10/24 must use the specific pool member for load balancing. Which configuration change is needed to meet the requirements?. Create a new virtual server for traffic sourced from 10.10.10.0/24 on port 80 that is destined to 10.10.20.1/32, and create a new pool has only the pool member FTP1 defined. Add FTP1 to the pool assigned to the MyVS4 virtual server, and remove all other pool members from the pool. Create a new virtual server for traffic sourced from 10.10.10.0/24 on traffic sourced from 10.10.10./24 on port 21 that is destined to 10.10.20.1/32, and create a new pool that has only the pool member FTP1 defined. Add FTP1 to the pool assigned to the MyVS2 virtual server, and remove all other pool member from the pool.

The server team has recently configured the three new DNS servers shown for the data center. No current DNS servers are currently configured on the LTM device. Which command should be used to configure the LTM device to use the new DNS servers?. tmsh create/systins name-servers add {192 168.1.2.192.168.100.1O0.192.168.2O0.2OO}. tmsh change /sysdns name-servers add {192.168.1.2.192.168.100.100.192.168.200.200}. tmsh modify/sysdns name-servers add {192.168.1.2.192.168.100.100.192.168.200.200}. tmsh set/sysdns name-servers add {192.168.2.192.168.100.100.192.168.200.200}.

AN LTM Specialist is using an external monitor evaluate the hard drive usage of a node. The monitor has marked the node down because it exceeded the specific threshold. The disk usage on the server has been corrected below the threshold, however, the node remains offline. Which feature is causing this problem?. The parameter Time Until UP has a value greater than 0. The value of Manual Resume is set to No. The value for UP interval is enable with a value greater than 0. The value for Manual Resume is set to Yes.

An application is sensitive to packet loss and unexpected session termination. A pair of LTM devices is configured in an Active/Standby high availability configuration. SNATS are NOT used and the virtual server contains a Universal Persistence profile. which two actions must an LTM Specialist take to ensure the sessions are maintained between the client and server during an LTM device failover event while maintaining maximum uptime? (Choose two.). configure a serial failover cable for mirror traffic. configure a OneConnect profile to mirror connections. configure a VLAN and primary mirroring address for mirror traffic. enable Mirroring for a virtual server and persistence profile. enable Clone Pools for a virtual server and a persistence profile.

AN LIM Specialist must upgrade the VCMP Guest active/standby LTM pair from version 11.3 to 11.5.3 on two VCMP Hosts. where should the LTM Specialist import the latest 11.5.3 ISO images?. to the primary VCMP Host and the active Guest instance. to both VCMP Hosts. to the secondary vCMP Host and the standby Guest instance. to the VCMP Guest instances.

An LTM Specialist needs to create a virtual server to pass TCP traffic to three pool members. Which two virtual server types should be used to meet the requirements? (Choose two). Performance (Layer 4). Standard. Forwarding (IP). Stateless. Forwarding (Layer 2).

An LTM Specialist is experiencing issues in a failover event. Certain long-lasting FTP event. Certain long-lasting FTP connections using a single node pool are forced to reconnect. The bigip.conf extract is shown: virtual vs-ftp-2121 { snatpool ftp-2121 pool ftp_2121 destination 10.155.65.26:scientia-ssdb ip protocol tcp persist source_address_ftp vlans external enable } ltm persistence source-addr source_addr_ftp { app-service none map-proxies enabled mask none mirror disabled timeout 180 } What does the LTM Specialist need to change in the configuration to avoid this issue?. snatpool. persistence mirroring. connection mirroring. ftp profile.

The network team introduces a new subnet 10.10.22.0/24 to the network. The route needs to be configured on the F5 device to access this network via the 30.30.30.158 gateway. How should the LTM Specialist configure this route?. Tmsh modify net route 10.10.22/24 gw 30.30.30.158. Tmsh create net route 10.10.22/24 gw 30.30.30.158. Tmsh changey net route 10.10.22/24 gw 30.30.30.158. Tmsh add net route 10.10.22/24 gw 30.30.30.158.

A virtual server is using a TCP profile based on the top-wan-optimized profile for a streaming application Users report videos are loading slowly. Which setting should be modified in the TCP profile to optimize the application?. Disable Slow Start. Disable Selective ACKs. Disable Nagle's Algorithm. Disable Reset on Timeout.

An LTM specialist needs to upgrade a VCMP quest in an HA Setup with minimum interruption for all VCMP guest instances. In which should the LTM Specialist perform this upgrade?. Relicense the host. Failover all guest’s active traffic-groups to the other host, copy image to gest, create guest UCS install and set boot location to new volume, reboot. Failover this specific guest’s active traffic-group to the other Host, Relicense the guest, copy image to guest , create guest UCS, install and set boot location to new volume, reboot. Failover all guests’ active traffic-group to the other Host, Relicense the host, copy image to guest, create guest UCS, install and set boot location to new volume , reboot. Failover all guests’ active traffic-group to the other host, copy image to guest, create guest UCS install and set boot location to new volume, reboot, Relicense the host.

AN LTM Specialist receives reports that an external company application is having reliability issues. The F5 Administrator finds the following in /vat/log/ltm file. tmm tmm[1]: 011e0002:4: sweeper_update: aggressive mode activated. (117504/138240 pages) tmm tmm[1]: 011e0002:4: sweeper_update: aggressive mode deactivated. (117503/138240 pages) The LTM Specialist determines that the F5 LTM device is entering into Aggressive Mode Adaptive Reaping, which is causing the site reliability issues. What is the most likely reason that the LTM device has entered into Aggressive Mode Adaptive Reaping?. The LTM device exceeds licensed traffic limits. The site has too many licensed modules. The LTM device has not provisioned AVR. The site is under DDOS attack.

An LTM Specialist has trouble with SNMP traps in the management network The ITM Specialist takes the network capture shown to troubleshoot: What should the UM Specialist change to capture packets related to this workflow?. the interface. the tcpdump filter expression. the verbose level. the port.

An LI M device is experiencing a high volume of traffic. The virtual server is struggling under the load. The problem appears to be on the server side connections. The virtual server is accepting connections . The virtual server is accepting connections on https and is configured with an SSL profile and http pool. What should be added to increase the performance of the device?. an HTTP Compression profile. a One Connect profile. smaller key to the SSL profile. a SPDY profile.

An LTM Specialist plans to enable connection mirroring for a virtual server in an HA environment. What must the LTM Specialist consider before implementing the configuration change?. Impact on system performance that might be noticeable. The add-on license that is required for this feature to be available. Creating the required separate interface for connection mirroring. Decreased number of possible concurrent connections to that virtual server.

An application is making heavy use of a large, high-quality JPEG image file. An LTM Specialist needs to enhance page load times without increasing server load. Which profile should be applied to the virtual server to perform this task?. Response Adapt. OneConnect. FastHTTP. Web Acceleration.

Refer to the exhibit. An LTM Specialist has multiple SNAT and virtual server objects configured as in the bigip.conf shown. The LTM Specialist tests a connection from a client with. IP 172.163.31.11 to 192.168.0.100:80. Which two objects will show an increase in Local Traffic statistics connections?. VS_A&SNAT_B. VS_B&SNAT_B. VS_ B & SNAT A. VS_A & SNAT A.

An application requires load balancing functionality. The application must be encrypted to the client. Certain content must be manipulated by the following IRule: Which set of profiles must be applied to the virtual server?. TCP, HTTP server SSL Stream. TCP, HTTP, Client SSL, Stream. TCP, HTTP, OnceConnect, Stream. Fast L4, HTTP server SSL Stream.

Six servers have a varying number of connections that change based on the user load. Which load balancing method should an LTM Specialist apply to divided the web application traffic to the servers on the relative performance trend?. Least Sessions. Least Connections. Predictive. Ratio.

An LTM Specialist has recently taken over administration or an LTM device that has experienced resource availability issues. The LTM device will need to be solely used for load balancing and SSL offload. Previously, the LTM device was also used to provide statistical analysis of application traffic. However, that functionality has been moved to a third party solution. Based on the output below, which configuration change should be made to ensure the LTM module receives the most amount of resources?. Provision AVR to Minimum. Provision LTM at Maximum. Provision AVR to none. Provision LTM to Dedicated. Provision AVR to Minimum, Provision LTM to Dedicated. Provision LTM to Dedicated, Provision AVR to Dedicated.

The picture belongs to static content, you can configure static content cache in FS to meet this demand An LTM Specialist must configure session persistence for a highly available, highly utilized web-based application. * The following requirements are provided: * http proxy setup for security persistence information available to the HA peer in case of failover The LTM Specialist needs to minimize additional burden on the LTM device to the greatest extent possible. Which persistence profile should be used?. Cookie insert. Universal. Source Address Affinity. Destination Address Affinity.

An LTM device needs to be configured a virtual server. The application requires SSL encryption from the client to the server and an X-Forwarded-For added by the LTM device. Which virtual server type should the LTM Specialist use?. Forwarding (IP). Performance (HTTP). Standard. Stateless. Performance.

Exhibit. - The ITM devices LTM 1 and LTM2 are configured in Device Group X (Sync-Failover) - LTM3 and LTM4 are configured in Device Group Y (Sync-Only) - An LTM specialist configures Device Group Z (Sync-Only) to keep several profiles in (sync-Only) to keep several profiles in sync across all devices. - Device GROUP X has four Traffic Groups A.B.C and D configured. - Device Group Y has four Traffic Groups E, F. G, and H configured - Auto Fallback IS NOT Enabled. - Each Device group is healthy and able to pass traffic for any traffic group assigned to that Device Group. The data center that contains LTM2 and LTM4 loses power. After 10 minutes; power is restored and all devices are up and healthy. What is the state of each Traffic Group on each ITM device after power is restored?. [TM1] Traffic Group A, B, C and D [TM2] No Traffic Groups [TM3] Traffic Group E and F [TM4] Traffic Group G and H. [TM1] Traffic Group A and B [TM2] Traffic Group C and D [TM3] Traffic Group E and F [TM4] Traffic Group G and H. [TM1] Traffic Group A and B [TM2] Traffic Group C, D and G [TM3] Traffic Group E and H [TM4] Traffic Group F. [TM1] Traffic Group A and B [TM2] Traffic Group C and D [TM3] Traffic Group E, F, G and H [TM4] No Traffic Groups.

An organization’s development team creates an application to put behind the F5 LTM device. The application can be quite load intensive at first, and then evens out over time. The team’s load balancing method needs to select a pool after taking into account the pool member’s response over the time to avoid landing on a busy pool member. Which of the following load balancing methods meets this requirement?. Fastest (application). Predictive (member). Dynamic (node). Observed (member).

The web application team requests help from the LTM Specialist to Improve the performance of their web sites that are load balanced by the F5 LTM device with a Standard Virtual Server. Which virtual server type will improve the performance of the web application servers?. Performance (HTTP). Performance (Layer 4). Stateless. Forwarding (IP).

A new DNS virtual server has been configured. Testing reveals that DNS server has failed to accept DNS over TCP. The configuration of the virtual server is as follows: Which action should be taken to correct this issue?. create a new virtual server with the service port of 53 and the protocol set to TC. change the profile set on the virtual server To TCP/UDP. change the profile set on the virtual server to TCP. add a TCP prone to the existing virtual server.

Two LTM devices must be manually configured to restrict in the same Device Group. What is the correct order of steps to meet this requirement?. Configure VLAN, Configure-Sync IP, Configure Failover type, Establish Device Trust, Sync Device Trust, Create type, Establish Device Sync Device Trust, Create Device Group. Configure VLAN, Configure Self-IPs, Configure Config-Sync IP. Configure Failover type, Establish Device Trust, Sync Device Trust, Create Device Group. Configure Self-IPs, Configure VLAN, Configure Config-Sync IP. Configure Failover type, Establish Device Trust, Sync Device Trust, Create Device Group. Configure VLAN, Configure Config-Sync IP. Configure Self-IPs. Configure Failover type. Establish Device Trust, Create Device Group.

An LTM Specialist creates an Analytics wide to show the type of browsers used to access a certain application. However, the generated statistics only sum up all transaction for that application under one item called ‘ Aggregated.’’ What should the LTM Specialist do to resolve this problem?. Verify that the Analytics profile is assigned to the applications virtual server. Make sure ‘’User Agent’’ is selected in the Analytics profile. Drill down into the stats to show the User Agents correlated in the Aggregated group. Make sure ‘’User Sessions’’ is selected in the Analytics profile.

Exhibit. Webserver_pool consists of 6 members. phpAuction_80_pool consists of 2 members LTM1 is the current Active member. LTM1 loses connectivity to 3 of the 6 members in the webserver_pool LTM2 still has connectivity to all servers. What is Theo expected failover behavior?. LTM1 Standby / LTM2 Standby. LTM1 Active /LTM2 Active. LTM1 Active / LTM2 Standby. LTM1 Standby / LTM2 Active.

Refer to the exhibit. A pool is contoured with four members. A user has a current connection established with 10.18.1.40. The virtual server has a persistence Profile configured. 10.18.1.10. 10.18.1.20. 10.18.1.40. 10.18.1.30.

An LTM Specialist is configuring a virtual server with an IP address. Which configuration is unsupported?. Performance 14 virtual server with an HTTP profile. Standard virtual server with an HTTP profile. Performance 14 virtual server with a FastHTTP profile. Standard virtual server with a TCP profile.

An LTM Specialist notices that two members in a pool are overloaded. To relive the existing members a fourth member (10.128.20.14) is brought up. How many member will receive and process new connections?. 4. 3. 2. 1.

AN LTM Specialist is deploying an iRule designed to determine the country of origin of an incoming client connection. The iRule needs to be used with an SSL-enabled web application. Which profile required for the iRule to function properly?. HTTP. DNS. TCP. UDP.

A BIG IP device delivers the online shopping website https://shop.example.com. Two pool members handle the traffic. An iRule directs requests with the hip parameter "environment=development" to a third pool member for a staging environment. Which combination of profiles is needed at minimum?. tcp, http, request logging. tcp, http, clientssl. tcp, clientssl, serverssl. http, clientssl, persistence.

An LTM Specialist needs to use the tmsh command to create a pool named http_pool with member 10.10.101:80 on an LTM device. Which expression should the LTM Specialist use?. # tmsh create pool http_pool members {10.10.10.101:80}. # tmsh create pool http_pool members add {10.10.10.101:80}. # tmsh create it pool http_pool members {10.10.10.101:80}. # tmsh create itm pool http_pool member {10.10.10.101:80}.

An LTM device configuration is as shown: What should be the two expected outcomes based on this configuration? (Choose two.). A client session that has been idle for 16 minutes will be sent to the same pool member. A client session that has been idle for 20 minutes will be balanced to a new pool member. A client session that has been idle for 14 minutes will be balanced to a new pool member. A client session that has been idle for 48 minutes will be sent to the same pool members. A client session that has been idle for 12 minutes will be sent to the same pool member.

What should the LT'M Specialist add to the virtual server?. One Stream profile and an iRule with the command of STREAM expression (@http:// @https:// @@internalapp@publicapp@). Two Stream profiles and an iRule with the command of STREAM expression (@http:// @https:// @@internalapp@publicapp@). One Stream profile with the expression of @http:// @https:// @. Two Stream profiles, one profile for each rewrite requirement.

An LTM device provides load balancing to a web application? The LTM device has two dual-core processors and a licensed SSL Transactions Per Second (TPS) limit of 500 CMP is enabled. TLS connections are used between client systems and virtual servers on the LTM device, as well as from the LTM device to servers used as part of LTM pool. TLS enabled virtual servers utilize certificates based on 2048-bit keys During a peak period. 2560 new TLS transactions per second are attempted to the web application via the LTM device. What will happen in this scenario?. 560 new TLS transactions will be silently discarded due to the SSL TPS license limit. Nothing: TLS transactions per second are NOT affected by an SSL TPS license limit. 2060 new TLS transactions will be silently discarded due to the SSL TPS license limit. Nothing: 2560 TLS transactions per second is within the SSI TPS license limit.

One LTM device in an HA pair of LTM devices is unable to reach its default gateway. An HA Failover event needs to happen. Which configuration item enables this behavior?. iRule. Gateway Fail Safe. Gateway pool monitor. Gateway pool.

Refer to the exhibit. An LTM Specialist configures the two syslog destination Syslog destination #1 can receive messages but the syslog destination #2 can NOT receive messages. Which command sill correct the issue?. {/Common)(tmos) # modify /syssyslog remote-servers modify (syslog_dest2 {local-ip. {/Common)(tmos) # modify Ays syslog remote servers modify {syslog_dest2 {local- ip 10.208.102.254)}. {/Common) (tmos) # modify /sys syslog remote-servers modify {syslog_dest2 {host 10 208.102.254 }}. {Common(tmos) # modify/syslog remote-servers modify {syslog_dest2 {lost.10.10.10.28 }}.

Where does a LTM Specialist view all of the objects that are part of a deployed iApp?. iAPP> Application Policy > Objects. Local Traffic . Virtual Servers > Applications. IAP > Application Service > Components. Local Traffic > Network Map > View Map.

A new iRule needs to be tested. The LTM Specialist needs to measure page load times and monitor potential changes in memory usage A load test is scheduled. Which two features should the LTM Specialist use to monitor these requirements? (Choose two.). Tmsh show memory. Analytics. Tmsh show sys proc-info. Tmsh show sys provision.

TWO LTM devices are in the same Device Group and configured for Ac live/Standby Failover. The LTM Specialist observes that the HA Active and Standby device constantly changes state. All network links use the default route domain A dedicated fiber ink is used for the HA connection with a latency of 250 ms but no packet loss. What is causing the change in failover state to occur?. The HA network is using the default routing domain. The HA network is using multicast IP. The HA network is not configured for mirroring. The HA network latency is too high.

Refer to the exhibit. The http monitor is applied to a pool All members are enabled One pool member stops responding TCP port 80. The server still responds to ping. What is the resulting status of this pool member?. Available (Enabled). Offline (Disabled). Unavailable (Disabled). Unknown (Enabled).

An LTM Specialist must reconfigure a BIG-IP system that load balances traffic to a web application. The security department has informed the LTM Specialist that the following cipher string must be used for TLS connections from BIG-IP to the web application. NATIVE:IMDS:EXPORT:IDHE:EDH@SPEED In which virtual server profile should the cipher string be configured?. Server SSL. Client SSL. SPDY profile. Rewrite profile.

Refer to the exhibit. The pool shown is configured with four pool members in a variety of states. The application is receiving a large number of request. The LTM Specialist needs to make changes to make sure that all members receive the same levels of traffic. Which changes need to be made?. Enable 10.80.1.40 disable priority group activation, enable ratio. Enable 10.80.1.40 and 10.80.1.1.20 disable group activation, enable Round Robin. Enable 10.80.1.20 disable priority group activation, enable Round Robin. Enable 10.80.1.40 and 10.80.1.20 disable priority group activation, enable ratio.

A custom TCP application using a single server is being migrated to the LTM device. A server is being added to the pool. The application is known to violate the TCP protocol RFC. The application currently works without error from a user perspective. Which virtual server type is appropriate in this situation?. Stateless TCP protocol is not applicable. Performance (Layer 4)-pure layer A forwarding. forwarding (Layer 2) pure routing forwarding, pool cannot be specified. Standard-tcp profile exists, RFC verification will be performed.

An LTM Specialist is removing some of the load off an existing cluster by adding a adding a third BIG-IP device to the device group. The new device can deliver twice the performance of the other two devices. The LTM Specialist needs to make sure that the BIG-IP device with the highest available capacity is always selected to take over a traffic group in the event of a failover. Which failover method is most appropriate?. Ordered List. Load Aware. HA Group. HA Capacity.

A web application is configured as follows: What should be modified to set a maximum request limit?. Virtual server settings. HTTP profile. Pool settings. ICP Profile.

An LTM Specialist has detected that a brute force login attack is occurring against the SSH service via a BIG-IP management interface. Login attempts are occurring from many IPs within the internal company network. BIG-IP SSH access restrictions are in place as follows: The LTM Specialist has determined that SSH access should only occur from the 192.168.1.0/24 and 172.16.254.0/23 networks. Which tmsh command should the LTM Specialist use to permit access from the desired networks only?. modify.sys sshd allow add {''192.168. 10/24 , '' ''172. 16 2540/23''). modify /sys sshd login disable (''10.0.00/8'', ''172 16.0 0/12'', ''192. 168.0.0/16''). modify/sys allow replace-all-with {''192.168.1.00/24'', ''192.16.254.0/23''}. modify/sys sshd login enable {''192.166.10/24'''' ''172.16 254 0/23.

An LTM Specialist configures a new HTTPS virtual server that contains a valid example.com ssl certificate. The LTM Special receives an error in the browser when connecting. What must be added to the SSL Client profile to fix this issue?. A sell-sign certificate. A new example com certificate. An intermediate certificate. A public root certificate.

A pool has four members. Ail of the servers have been designed and configured with the same application. Each client's request can significantly the performance of the servers. Which load balancing method should the LTM Specialist use to maintain a relatively even load across all servers?. Least Connections. Priority Group. Ratio. Observed.

An LTM Specialist needs to configures virtual server that uses PVA or OPVA Which virtual server type should be used?. Stateless. Performance (HTTP). Standard. Performance (Layer 4).

An LTM Specialist needs to deploy a virtual server that will load balance traffic targeting https://register.example.com to a set of three web servers. Persistence needs to be ensured. No persistence mirroring is allowed SSL offloading is required. A fourth web server with fewer resources will be used to handle requests from engine bots to https://register.example.comvrobots.txt by an iRule. The (Rule will use the HTTP_REQUEST event. What are the required profile and persistence settings to implement this. tcp. dientssl, hup, source address persistence. tcp, clientssl, http. cookie persistence. tcp, clientssl, serverssl, ssl persistence. tcp, clientssl, http, serverssl cookie persistence.

Consider the monitor configuration displayed below. ltm monitor http MyHTTP_Monitor { defaults-from http destination *.* interval 5 recv 200 OK* reverse enabled send "GET" time-until-up 0 timeout 16 What is the status of a pool member that responds with ''200 OK''?. available. down. disabled. unknown.

Remote users who access the LTM device are authenticated via Radius. The default remote user role is Guest Some users need LTM device with the Administrator role. The F5 Radius attributes are configure on the Radius server. Which configuration item needs to be created?. Remote User role. Admin account. User role. User account.

An LTM Specialist configures a new virtual server with a single pool member. The LTM Specialist has NOT defined a health monitor for the pool, pool member or node. What is the status of the virtual server?. Available (Enabled). Offline (Disabled). Unavailable (Enabled). Unknown (Enabled).

An LTM Specialist discovers an issue with the custom http monitor that returns in a false positive status. The end users cannot get the right website, but the http monitor marks the pool member UP. What is causing the false positive result?. The end user should use another type of browser. The response is chunked. The response is compressed. The Content-Type has value "iso-8859-200".

An HA pair of LTM devices that load balance multiple HTTPS applications utilizes highly customized RAM Cache and compression profiles on each virtual server. The LTM Specialist who is administering the HA pair regularly observes entines in the log similar to the following: tmm tmm I708S1 011e0002.4. sweeper_update: aggressive mode activated (117504/138240 pages) No DoS attacks arc occurring. No user problems have been reported. Which step should the LTM Specialist take to help mitigate the issue?. change the Adaptive Reaping High watermark. change the Adaptive Reaping Low watermark. allocate less memory to the RAM cache feature. use a OneConnect profile.

Refer to the exhibit. The http monitor is applied to a pool. All members are enabled. One server responds as follows. <head> <title>Apache HTTP Server Status</title> <body> THIS APPLICATION SERVER HAS EXPERIENCED AN ERROR </body> </html> What is the resulting status of this poo! member?. Offline (Disabled). Offline (Enabled). Unavailable (Disabled). Available (Enabled).

An LTM Specialist must create a new virtual server for HTTP access. The LTM Specialist creates a forwarding virtual server to reach the resource. What is a potential result of this action?. IP conflict result. HTTP traffic is NOT allowed. Other service ports could be allowed. Packet filter allowances are also required.

Exhibit. The three VLANS shown provide connectivity to backend servers. The backend servers are being moved to unmanaged switches and require separate interfaces. How should the F5 device interfaces be configured?. Create a Trunk interface and combined interface 1.1.1.2 and 1.3. Create a Trunk interface and select VLAN„A, VLAN_B. and VLAN_C. Create VLAN named VLAN_A enter 100 under Tag and move interface 1.1 to tagged Create VLAN_B enter 200 and move interface 1.2 to tagged Create VLAN_C Center 300 and move interface 1.3 to tagged. Create VLAN_A move interface 1.1 to untagged. Create VLAN_B move interface 1.2 to untagged. Create VLAN_C move interface 1.3 to untagged.

An unwanted IP address tries to connect to the configuration utility via Self IP An LTM Specialist needs to block the attempts based on the IP address. How should the ITM Specialist block the attempts without affecting other users?. SSH IP allow list. Port lockdown. Device trust. Packet filter.

An LTM Specialist regularly provides analytics reports that show that traffic generated by different subnets within the organization. The LTM Specialist needs show the associate department names next the IP addresses in the reports. Which step should the LTM Specialist take to meet this requirement?. use an iRule to change the output of the report. export the report and add the department names manually. create VLANs for each subnet and set the name accordingly. define active subnets and assign a name to certain subnets.

An LTM Specialist needs to create two virtual servers. The application has links for both HTTP and HTTPS version of application. The client must be persistence to a pool member, no matter which virtual server is accessed. What must be selected in the Source Address Affinity persistence profile?. Match across Virtual Servers. Match across Pool Members. Match across Services. Match across Polls.

Traffic to a pool of SFTP servers that share storage must be balanced by an LTM device. What are the required profile and persistence settings for a standard virtual server?. tcp, ctientsst, ftp serverssl persistence. tcp, clientssl, serverssl persistence. tcp, ftp - Source address persistence. tcp - no persistence profile will be used.

Four members in a server pool have similar hardware platforms. An LTM Specialist needs the load balancing method that can select the server with the fewest entries in the persistence table. Which load balancing method should the LTM Specialist use?. Observed. Dynamic Ratio. Least Sessions. Leas Connections.

An LTM Specialist needs to provide access to a 8BG-IP to device for a company's support person access to the BIG IP device, but are NOT allowed to change any settings All support the support remote access to the BIG-IP device, but are NOT allowed to change ant settings. All support have accounts in the company's Active Directory Which method is appropriate to provide access for the support personnel to the BIG-JP device?. configure remote authentication for all users with a default user role of Guest. configure remote authentication and map support personnel users to the Guest user role. configure remote authentication and map support personnel users to the Operator user role. configure remote authentication for all users with a default user role of Operator.

TWO BIG-IP appliances need to be configured to load balance multiple firewall in a firewall sandwich, Which health monitor setting should be used to verify that the firewalls are able to forward traffic?. Adaptive. Reverse. Transparent. Up internal.

AN LTM Specialist needs to determine the delay between an LTM device and the internal web server for a specific client. Which two AVR reporting options should the LTM Specialist enable to measure the delay? (Choose two.). User agents. Methods. Response codes. Server latency. Client IP.

A customer wants to select the pool for an application based on information found in the path of the URL. For example: http://www.example.com/app 1 should be sent to the app 1 pool http.//www.exampie.com/app 2 should be sent to the app2 pool Which two profiles need to be assigned to the virtual server? (Choose two.). Client SSL. Persistence. TTP Compression. HTTP. TCP.

An LTM device receives a response string containing "error" Which monitor type and parameter will mark the HTTP server as down?. HTTP monitor, Receive String "error", and set the Reverse option to Yes. HTTP monitor and Receive String "error'' ... flag is up. HTTP monitor. Receive String "down", and set the Reverse option to Yes .... flag is. HTTP monitor and Receive Disable String "error'' .... flag is disable.

An LTM Specialist needs to terminate client SSL traffic and based on the cookie presented by client. Which set of profiles should the LTM Specialist use?. HTTPS, Client SSL, Cookie Persistence Profile. HTTP, Server SSL, SSL Cookie Profile. HTTPS, Server SSL, SSL Cookie Profile. HTTP, Client SSL, Cookie Persistence Profile.

Remote office users are having performance issues with a virtual hosted on the F5 LTM. The LTM Specialist reviews the configuration for the virtual server and determine that some settings are set with default profiles. Which profile should the LTM Specialist enable to improve virtual server performance?. A WAN optimized client side profile. A FastL4 profile on the virtual server. An HTTP profile for the virtual server. A Stream profile for the remote user networks.

An HTTP monitor is created and assigned to a pool with the following non-default configuration: Interval: 7 seconds Timeout: 22 seconds Reverse: Yes Send String: GET/status.html HTTP/1.1/r/nHost:test.example.com/r/nConnector:Close Receive String: Up The HTTP server sends the following response: What is the resulting pool status?. Unavailable (Enabled). Available (Enabled). Offline (Enabled). Unknown (Disabled).

An LTM device needs an additional traffic group. Which configuration item is required?. Default device. Group name. MAC Masquerade Address. Auto Fallback Timeout.

An LTM Specialist decides to offload SSL traffic on the LTM device instead of just passing it through. The LTM Specialist needs to change the configure from a Performance (Layer 40 virtual server to a Standard virtual server with SSL offload. Which two element the LTM Specialist consider when performance this task? (Choose two.). CPU load. Sensitive connections. Port exhaustion. Memory load. Connection mirroring.

An LTM Administrator receives an email from the NOC stating that the switch connected to the backend server was shut down for maintenance. The BIG-IP device handles only UDP traffic. The BIG IP device did not fail over to a DR location when no pool members were available. When the LTM Administrator checks the pool, it confirms that the monitor is still marking UP the pool member. A tcpdump of the traffic shows the following output: [root@bigip1 Active Standalone] config # tcpdump -nn 0.0 host 10.50.0.1 tcpdump: verbose output suppressed, use -v or -vv for full protocol decode listening on 0.0, link-type EN10MB (Ethernet), capture size 96 bytes 02:00:16. IP 10.10.0.254.46400 > 10.50.0.1.26000: UDP, length 5 02:00:46. IP 10.10.0.254.52200 > 10.50.0.1.26000: UDP, length 5 02:01:16. IP 10.10.0.254.55050 > 10.50.0.1.26000: UDP, length 5 02:01:46. IP 10.10.0.254.36742 > 10.50.0.1.26000: UDP, length 5 A list of the monitor configuration shows the following: root@bigip1(cfg-sync Standalone)(Active)(/Common)(tmos)# list ltm monitor udp game all-properties ltm monitor udp game { app-service none debug no defaults-from udp description none destination *:* interval 30 manual-resume disabled partition Common recv none recv-disable none reverse disabled send QUAKE time-until-up 0 transparent disabled up-interval 0 } Which two modifications to the LTM configuration will mark this pool member down, when the switch is down? (Choose two.). increase the timeout to three times the interval. add a reverse string to the game monitor. enable reverse and wait for the next connection. also assign a gatewayjcmp monitor to the pool. enable manuai-resume on the same monitor.

An LTM Specialist is the administrator of an HA pair that contains two BIG IP units and one floating traffic group (TG1). A new project requires the creation of 30 virtual servers. The Specialist decides to create a new floating traffic group (TG2) to handle this requirement. Objects for this project created by the BIG-IP Managers must appears in the correct traffic group. Which configuration should the LTM Specialist use to meet the requirement?. Move the BIG-IP Managers from TG1 to TG2. Create a new partition and set the default traffic group to TG2. Modify the default traffic group of the Common partition to TG2. Restrict the Traffic Group Access of BIG-I Managers to TG2.

Which Standard Virtual Server settings should an LTM Specialist use to load balance across routed path of two different ISPs?. address translation enabled and port translation disabled. both address and port translation enabled. both address and port translation disabled. address translation disabled and port translation enabled.

To improve application security, an LTM Specialist must configure a BIG application access. The BIG IP system to authenticate the client certificate before permitting application access. The BIG-IP system must also support the ability to red to redirect users to a certificate enrolment system without generating a browser error. Within the Client SSL profile, which value should the LTM Specialist select for the Client Certificate option?. Require. Request. Demand. ignore.

An LTM Specialist needs to configure a setup for antivirus scanning of HTTP traffic with an internet Contact adaption Protocol (ICAP) server. Which two server type should be used? (Choose two.). Standard. Internal. Performance HTTP. Forwarding IP. Stateless.

An LTM Specialist reports that an application si no longer reachable after it has been upgraded. Nothing has been changed in the configuration on the LTM device. The logs indicates that health monitors to all servers have failed as shown: What should the LTM Specialist verify next?. That the TCP hand shake with the servers is stall completed using tcpdump. That the custom receive string for the HTTP monitor has changed with the upgrade. That the can still ping the servers from te BIG_ IP device. That the firewall between the BIG-ip device and servers is still allowing HTTP.

An LTM device load balances a pool of routers. The LTM device needs to verify path availability to an HTTP server with the IP address 192 168.10 10. located beyond the routers. Which monitor type and parameters arc required?. HTTP monitor alias address 192 168.10 10. and set the alias to port 80. TCP monitor, alias address 192.168.10.10. and set the alias to port 80. TCP monitor change transparent option to Yes. set alias address 192.168.10.10. and set the alias to port 80. TCP monitor, change transparent option to Yes, and sot the alias to port 80.

An LTM Specialist upgrades the switching infrastructure and the backend servers on the LAN segments. The LTM Specialist notices a 20% memory usage increase on the BIG-IP device while handling the same number of concurrent connections. A comparison of statistics pre-upgrade and post-upgrade shows a significant reduction on the following: -RTT between the BIG-IP device and the backend servers -Packet drops in the switch Time to First Byte (TTFB) The LTM Specialist is concerned with the scalability of the number of concurrent connections with the new memory usage. Which setting should be changed to reduce the memory usage on the BIG-IP device?. Reduce the proxy buffer high setting on the server-side TCP profile. Increase the receive window of the client-side TCP profile. Increase the proxy buffer high setting on the server-side TCP profile. Reduce the idle of the client-side TCP profile.

An LTM device configured with a management IP address and route and a series of self-IPs and TMM routes. Both management and TMM have a routing entry for 101 10/24 Application traffic is being load balanced and sent to pool member 10.1.1.123 with SNAT Automap and configured. Which route will the LTM device use?. TMM route regardless of the management port status. both routes, which will duplicate traffic on both management and TMM interface. equal cost multipath load balancing via both routes. management route when TMM interface is down or TMM is offline. management route regardless of the management port status.

A web server is being overloaded with HTTPS traffic. To decrease the load on the server, the LTM Specialist and the Server. Administrator decide to perform SSL offloading on the LTM device. The configuration of the virtual server is as follows: ltm virtual example.com_vs { destination 10.10.10.1:https ip-protocol tcp mask 255.255.255.255 pool webserver_pool profiles { clientssl { context clientside } http ( ) serverssl { context serverside } tcp ( ) } source 0.0.0.0/0 vs-index 12 } Which change must be made to the configuration to perform SSL offloading?. Remove the clientssl and http profiles. Remove the clients profile. Remove the clientssl and serverssl profiles. Remove the severssl profile.

A new HITP server has been deployed on an LTM device. The application running on the server must be monitored by the LIM device. The following is required: A new HITP server has been deployed on an LTM device. The application running on the server must be monitored by the LIM device. The following is required: When the server is unavailable, it will send an HTTP status code of 200 in response to a request for the status html page. When the server is available. I will send and HTTP status code of 201 in response to a request for the status html page. When the 200 status code is received, the pool member should receive No new connections. Which configuration change should be made to meet these requirements?. set the Send String to GET/ status html and the Receive String to 200 and Receive Disable String to 201. set the Send String to GET Arian and the Receive String to 200 and Receive Disable String to 201. set the Send String to GET Arian and the Receive Disable String to 200 and Receive String to 201. set the Send String to Get /status html and the Receive Disable String to 200 and Receive String to 201.

An TLM Specialist needs to configure a virtual server to terminate SSL connection on the LTM device. Cryptographic information must be re-authorized for SSL sessions that remain open for longer than 30 seconds. Which settings should the LTM Specialist configure in the client SSL profile?. set the Handshake Timeout to 30 seconds. enable Require Peer SN1 Support. set the Renegotiate Period to 30 seconds. set the Renegotiate Max Record Delay to 30.

A virtual server is configured to handle https traffic. The clientssl profile is configured to use a2048-bit RSA key. Due to security requirements, is the LTM Specialist needs to use a 4096-bit RSA key in the future. What two effects will this change have on the BIG-IP device? (Choose two). Increase of CPU usage on the BIG-IP device. Decrease to 20% of licensed TPS. Decrease to 90% of licensed TPS. Increased of concurrent connection on client-side. Increase of TLS Renegotiation.

An application is expected to maintain more than 100,000 concurrent TCP connections to a single pool member. What is an appropriate SNAT configuration in this situation?. A SNAT pool with 4 IP addresses. SNAT automap enabled. A static SNAT. A SNAT pool with IP address.

A new web application is being deployed Mutual SSL authentication must be used to authenticate clients. Which of the following two tasks must be completed to meet the requirements? (Choose two). configure the server SSL profile with "Client Certificate" Set to require. configure the client SSL profile with "Client Certificate" set to require. instruct the desktop team to update the web browser to the most recent release. generate a CSR to register a certificate with the CA. configure the client SSL profile with the Trusted .Certificate Authorities.

An LTM Specialist to configure a backend server to be disabled it takes longer than 30 seconds to respond to a request. Which values should the LTM Specialist enter for interval and timeout?. Interval 10, timeout 30. Interval 10, timeout 31. Interval 30, timeout 30. Interval 30, timeout 91.

Refer to the exhibit. The LTM devices LTM3 and LTM2 have four Traffic Groups defined with approximately the sar of failover objects defined in each group. - Traffic Groups A and C have Default Device set to LTM1 - Traffic Groups Band D have Default Device set to LTM2. - Traffic Groups B and C do NOT have Auto Failback enabled. Traffic Groups A and D have Auto Failback enabled with a timeout value of 60 seconds. - Traffic Groups A and D have Auto Fallback enabled with a timeout value of 60 seconds. Both LTM devices are healthy and able to pass traffic for any Traffic Group. LTM1 loses connectivity on interface 1.4. The LTM Specialists notified 60 seconds after the interface goes down. What is the state of the Traffic Groups on each LTM device?. LTM1: Traffic Group C LTM2: Traffic Groups A, B, and 0. LTM1: No Traffic Groups LTM2: Traffic Groups A, B. C, and D. LTM1: Traffic Groups A, B, C, and D LTM2: No Traffic Groups. LTM1: Traffic Groups B and C LTM2: Traffic Groups A and 0.

A VCMP guest has the following characteristics: • Resources allocated for CPU memory, network interfaces, and disk space • Virtual disk created • The guest is NOT running The guest is NOT running in which state is the VCMP guest. Offline. Deployed. Provisioned. Configured.

A company plans to launch a huge marketing campaign and expects increase demand of their secure website. With the current virtual server setup, the LTM Specialist expects that the LTM device will reach its capacity limits. For the wen application to function properly. Cookies persistence is required. The LTM Specialist needs to reduce LTM device load without breaking the application. Which two settings should the LTM Specialist modify to meet the requirement? (Choose two.). Remove HTTP compression profile. Remove HTTP profile. Remove web acceleration profile. Modify virtual Server type to performance (Layer 4). Remove ClientSSL profile.

An LTM Specialist is configuring a client profile to offload processing a new application Company policy requires that clients can resume session for up to 30 minutes, but must renegotiate a new session after that. Which setting should the LTM Specialist change to satisfy this requirement?. Renegotiate Max Record Delay. Renegotiation period. Cache size. Cache timeout.

An LTM is configure an application that is separated into several subdomains across multiple virtual servers. Many of these subdomains require encryption and could be accessed by anyone on the internet. The configuration must NOT result in SSL warnings to end users. How should the LTM Specialist configure the SSL profiles for these virtual servers?. Obtain an SSL certificate for each subdomain, make a ServerSSL profile for each subdomain, and apply to the related SSL Virtual Server. Obtain a wildcard certificate, create one ClientSSL profile and apply to all SSL Virtual Servers. Create a self-singed SSL certificate for each subdomain make a ClientSSL profile for each subdomain, and apply to the related SSL Virtual server. Create a self-singed SSL certificate for each subdomain make a Client profile for each SSL Virtual Server.

An LTM Specialist needs to enable TCP connection re-use for a non-HTTP application. The application uses a simple request response protocol where each request and response is contained within a single packet. Which configuration option should the LTM Specialist adjust?. increase the connection limit for pool members. increase the idle Timeout in a custom TCP profile. use a Performance (Layer 4) Virtual Server. assign a OneConnect profile.

A virtual server is experiencing intermittent port exhaustion. What should be done to fix this issue?. add more SNAT addresses. add more pool members. enable advanced routing. enable SNAT automap.

An LTM Specialist needs to gather website statistics such as latency and throughput on the existing virtual server. This virtual server load Balances the backend web servers. Which F5 feature will provide this?. the Performance panel. the AVR module. the Dashboard. the Statistics panel.

An LTM Specialist needs to upgrade all guests on a Viprion eight CMP guests. What is the maximum number of guests that the LTM Specialist should upgrade at once?. Eight. One. TWO. Four.

An application is being load balanced through the LTM device using the configuration displayed below. The network has been re-engineered to NAT all client connection. As a result, all client connections are hitting the same pool member. ltm virtual /Common/application { destination /Common/10.10.1.42:80 ip-protocol tcp mask 255.255.255.255 persist { /Common/source_addr { default yes } } pool /Common/http_pool profiles { /Common/fastL4 } translate-address enabled translate-port enabled vlans disabled } Which changes should the LTM Specialist make in order to restore load balancing functionality wilemaintaining session persistence?. Change the virtual server type to Standard, add an http profile, and change the persistence profile to Destination Address. Leave the virtual server type set Performance (Layer 4) and change the persistence type to hash. Change the virtual serer type to Forwarding (Layer 4) and leave the persistence type to hash source Address. Change the virtual server to Standard add an http profile, and change the persistence profile to Cookie persistence.

An LTM Specialist needs to configure a virtual server with the requirements displayed below. Application is currently an internal HTTP application Encrypted external user access Links are hard for siteA example.com and need to rewritten to siteB.Example.com Which profiles must the LTM Specialist use to provide the proper functionality?. Clientssll, Stream. Serverless, Stream. Clientssl, fastL4, Stream. Serverless, fastL4, Stream.

A pool with a default connection limit is configured to use Round Robin as the load balancing method. An LTM Specialist needs to ensure that the LTM device selects a server with the fewest number of connections when new clients connect. Another pool is using the same set of backend servers. Which load balancing-method should the pool be changed to?. Weighted Least Connections (node). Weighted Least Connections (member). Least Connections. Least Connections.

An LTM Specialist needs to load balance an application using an LTM device to meet the requirements: The application servers do NOT Support SSL, but client access to the application should be secured. Multiple requests from the same client should be sent to the same pool member. All pool members will have roughly the same processing power, and traffic should be distributed evenly. The LTM device is NOT the pool members' default gateway. which configuration should the LTM Specialist. a performance 14 virtual server with a SNAT and cookie persistence. a performance L4 virtual server with a Client SSL profile and Source Address persistence. A performance L4 virtual server with a SNAT, HTTP profile. Server SSL profile, and cookie persistence. A standard virtual server with a SNAT, HTTP profile Server SSL profile, and cookie persistence. A standard virtual server with a SNAT, HTTP profile, Client profile, andd cookie persistance.

Refer to the exhibit Given the bigip conf extract shown where the servers only talk http on port 80, which node will receive the next user request?. 72.10.1.1. 10.1.1.1. 10.1.1.2 0. 10.1.1.3.

An TLM Specialist has an Exchange that must use the LTM device to route traffic to the internet. Which SNAT/NAT configure allows the Exchange server’s traffic access the internet through the LTM device?. NAT. SNAT Pool. SNAT List. SNAT Automap.

An LTM Specialist needs to assign a health monitor to a pool with two pool members 10.10.10 101 and 10.10.10.102 Both pool members are listening on port 8080 with TCP. The health of the application depends on the health of an another server (10 10 10 100) that runs port 9080 with TCP. Which two custom TCP monitors should be selected as the pool's health monitors' (Choose two). a custom TCP monitor that works on port 9080 with 10.10.10.100 as alias address. a custom TCP monitor that works on port 9080,. a custom TCP monitor that works on port 8080. a custom TCP monitor that works on port 9080 with 10,10.10.101 as alias address. a custom TCP monitor that works on port 8080 with 10.10.10.101 as alias address. a custom TCP monitor that works on port 8080 with 10.10.10.102 is alias address.

An LTM Specialist needs to add a pool that will load balance MYSOL services. It has four members, each with differing hardware platforms. All pool members are already assigned to another pool for load balancing FTP traffic. Which load balancing method is most effective when the LTM Specialist sets up the pool?. Observed (node). Predictive member. Round Robin. Least Connections (node).

A node is assigned two monitors as seen in this configuration. What is the status of a member that runs on that node and listens on port 443?. UNKNOWN. UNAVAILABLE. DOWN. UP.

Exhibit. An LTM Specialist needs to configure VS^HTTP and VS_DB for an online shopping site. The VS HTTP passes the client requests to the webservers. The webservers query the database servers through the VS_DB. Initially, the LTM Specialist finds the database servers directly return the packets to the webservers. which setting must be enabled for the configuration to function correctly?. VS_HTTP snat auto map. VS.HTTP auto last hop. VS DB auto last hop. VS_DB snat auto map.

A Client makes the request displayed below to the application server. Which virtual server type should an LTM Specialist use to load balance based on the URI?. Forwarding (Layer 2). Stateless. Standard. Performance (Layer 4).

Which process can be eliminated by terminating SSL communication on the LTM device rather than the backend pool members?. generating CSRS. obtaining SSL certificates from a certificate authority. administering SSL on the web servers. applying security patches on the backend pool members.

An LTM Specialist needs to create a pool with a set of monitor that checks both the pool members and corresponding application service ports. The pool members have services on port 80. The application service is on port 8009. The LTM device should load balance traffic to the pool member when the pool member and corresponding application service pass monitor. Which monitor and parameter set meets this requirement?. TCP monitor for port* Plus a custom TCP monitor with alias port 8009, And the pool’s availability requirements set to the ALL. TCP monitor for port Plus a ustom TCP monitor with alias port 8009, And the pool’s availability requirement set to All. TCP monitor for port* Plus a custom TCP monitor with alias port 8009 And the pool ‘s availability requirement set to 1. TCP monitor for port Plus a custom TCP monitor with alias port 80 And the pool’s availability requirement set to ALL.

in which Application Visibility and Reporting (AYR) profile must the SMTP profile be defined to configure notifications via email?. App analytics profile. virtual server profile. custom analytics profile. default analytics profile.

While working with a web developer, it is determined that additional logic is required to assess the pool member availability. Which two monitor types should be used in this scenario? (Choose two). TCP. Scripted. Gateway ICMP. TCP Echo. External.

A web developer needs a virtual server configured for an application. The application details are as follows: Application is accessed on port 443. The application traffic is encrypted by the server. HTTP is not being used. No data manipulation is necessary. Throughput is critical. NO connections are terminated on the LTM. Which configuration provides the best performance?. ltm virtual /Common/WebServer { destination /Common/10.10.10.10:443 ip-protocol tcp mask 255.255.255.255 pool /Common/Web_pool profiles { /Common/fastL4 { } } source 0.0.0.0/0 translate-address enabled translate-port enabled }. ltm virtual /Common/WebServer { destination /Common/10.10.10.10:443 ip-protocol tcp mask 255.255.255.255 pool /Common/Web_pool profiles { /Common/WildcardCert { context clientside } /Common/serverssl { context serverside } /Common/tcp-lan-optimized { context serverside } /Common/tcp-wan-optimized { context clientside } } source 0.0.0.0/0 translate-address enabled translate-port enabled }. /Common/tcp-wan-optimized { context clientside } source 0.0.0.0/0 translate-address enabled translate-port enabled }. ltm virtual /Common/WebServer { destination /Common/10.10.10.10:443 ip-protocol tcp mask 255.255.255.255 pool /Common/Web_pool profiles { /Common/tcp { } } source 0.0.0.0/0 translate-address enabled translate-port enabled }.

A Web Server Administrator uses a manual process to display a page when the service is down. Which feature on the LTM device should be used to automate the service down page?. Enable Request Queueing. Action on Service Down. Redirect Rewrite. Fallback Host.

An LTM Specialist observes decreased performance and intermittent connection reap LTM system. ltm pool main_http_pool { load-balancing-mode observed-node members { 10.10.0.100:80 { address 10.10.0.100 } 10.10.0.101:80 { address 10.10.0.101 } 10.10.0.50:8080 { address 10.10.0.50 } } monitor http } ltm profile tcp corp_tcp { app-service none defaults-from tcp idle-timeout 14400 } ltm virtual main_vip_http { destination 192.168.0.100:80 ip-protocol tcp mask 255.255.255.255 profiles { http { } corp_tcp { } } pool main_http_pool source 0.0.0.0/0 } Based on the configuration, which action will address these issues?. Use an optimized TCP profile. Use a FastL4 profile on the virtual server. Use a default caching profile on the virtual server. Use a shorter idle timeout on the TCP profile.

An LTM Specialist needs to use a set of addresses to access an Internet website in an outbound configuration. Which feature should the LTM Specialist configure?. NAT pool. NAT address. SNAT pool. SNAT address.

A design requires the LTM device to become HA standby when the one of the two physical interface on the External trunk is down the External trunk is an interface on the External VLAN Which TMOS command enables this behavior?. tmsh modify net van External failsafe enabled. tmsh create sys ha-group External trunks add Externally. tmsh create sys ha-group External trunks add External threshold 2 weight 101). tmsh create sys ha-group External trunks add ( External( attribute percent up-members 100)).

An LTM Specialist needs to provide statistics regarding the round-trip time between the clients and the servers. Which metric should be part of the analytics profile to provide that information?. Page Load Time. User Sessions. Max TPS and Throughout. Response Codes.

In an iApp, which configuration protects against accidental changes to an application Services configuration?. Components. Strict Updates. Name. Template.

A virtual server with SNAT automap enabled selects pool member 10.20.0.10.443 for the server-side flow. The client side flow source IP is 192.168.0.10 . root@(bigip1)(cfg-sync In Sync)(Active)(/Common)(tmos)# list net self one-line net self selfv1 { address 10.20.0.1/24 traffic-group traffic-group-local-only vlan v1 } net self selfv1f { address 10.20.0.2/24 floating enabled traffic-group traffic-group-1 unit 1 vlan v1 } net self selfv2 { address 10.50.0.1/24 traffic-group traffic-group-local-only vlan v2 } net self selfv2f { address 10.50.0.2/24 floating enabled traffic-group traffic-group-1 unit 1 vlan v2 } Which source IP should be expected in the server-side connection?. 10.20.0.1. 10.50.0.2. 10.20.0.2. 192.168.0.10.

A LTM device needs to load balance active and passive FTP traffic while using only a single virtual server. Which virtual server type should an LTM Specialist configure on the LTM device?. Forwarding (Layer 2). Standard. Stateless. DHCP relay. Forwarding (IP).

Refer to the following iRule: What is a complete list of profiles that must be applied to the virtual server for this iRule?. Fast L4, HTTP. TCP, HTTP. TCP, HTTP, Client SSL. Fast L4 , HTTP, Stream.

An LTM Specialist needs to apply SNAT using currently used SNAT pool to a new virtual server. What needs to be completed before applying that configuration change?. Review connection for the selected SNAT pool and enlarge it if appropriate. Make sure that the BIG-IP device is NOT operating under heavy load during peak times. Verify that the IP address of the SNAT pool are in the same subnet as the pool members. Verify that the IP address of the SNAT pool are in the same VLAN as the pool members.

An LTM Specialist has noticed in the audit log that there are numerous attempts to log into the Admin account. Theses attempts are sourced from a suspicious IP address range to the Configuration Utility of the LTM device. How should the LTM Specialist block these attempts?. add the permitted source IP addresses to the httpd allow list via tmsh. add the suspicious source IP addresses to the httpd deny list via tmsh. add the suspicious source IP addresses to the httpd deny list via Configuration Utility. add the permitted source IP addresses to the allow list via Configuration Utility.

A web server's default gateway is the network router. The LTM Specialist needs to introduce an LTM device to load balance to the web servers without changing the server's default gateway. Which deployment method and settings should the LTM Specialist use to ensure correct traffic flow and that the web servers can obtain the actual con IP addresses?. route deployment with Automap configured and X-Forwarded-For inserted in HTTP headers. route deployment without SNAT configuration. SNAT deployment with automap configured and X-Forwarded-For inserted in HTTP headers. SNAT deployment with automap configured.

set payload {CACHE :: payload} } Which two profiles should be used on the virtual server? (Choose two.). http-transparent. http compression. http. webacceleration. stream.

A virtual server configuration for traffic destined to a server is as shown: VS Name Destination Service port Source MyVS1 192.168.1.101/32 80 0.0.0.0/0 MyVS2 192.168.1.101/32 * 192.168.2.0/24 MyVS3 192.168.1.101/32 21 192.168.2.0/25 MyVS4 192.168.1.0/24 * 0.0.0.0/0 FTP traffic is destined to the 192.168.1.101 server from the source of 192.168.2.129. Based on precedence, which virtual server accepts this traffic?. MyVS4. MyV53. MyVS1. MyVS2.

An LTM specialist needs to create a new account with the admin role called "newadmin' and access to all partitions. Which tmsh command should be executed?. create /auth user newadmin partition-access add {all-partitions {role admin }} prompt for-password. create /users newadmin partition-access add {all-partitions {role admin JJ prompt for-password. create /user newadmin partition-access add (all-partitions {role admin }} prompt- for-password. create / sys user newadmin partition-access add (all-partitions {role admin )} prompt-for-password.

When importing a PEM formatted SSL certificate, which text needs to appear first in the file?. --START CERTIFICATE.... ...BEGIN CERTIFICATE.... ...SECURITY CERTIFICATE.... ...SSL CERTIFICATE....

An LTM Specialist is configuring a new virtual server on an LTM device and assigning a SNAT pool that is already is use another virtual server. Both virtual servers use the same pool members to load balance traffic. A maximum of 35,000 users needs to be able to access each virtual server ta any time. The network architecture does NOT allow the backend servers to use the LTM device as a default gateway. What is the minimum number of SNAT addresses required in the SNAT pool to meet the needs of the virtual servers?. 2. 3. 4. 1.

The network team has recently added a new syslog server with IP address 10.1.1.1. Which command adds the new syslog entry on the F5 LTM device?. tmsh modify /sys syslog remote-servers add { server1 { host 10.1.1.1 remote-port 514 } } save sys config. tmsh create /sys syslog remote-servers add { server1 { host 10.1.1.1 remote-port 514 } } save sys config. tmsh adjust /sys syslog remote-servers add { server1 { host 10.1.1.1 remote-port 514 } } save sys config. tmsh add /sys syslog remote-servers add { server1 { host 10.1.1.1 remote-port 514 } } save /sys config.

AN LTM Specialist is setting up a new HTTPS virtual server to decrypt client traffic. SNAT the traffic and send the encrypted traffic to the poor member, the client's IP address must be included in the traffic sent to the pool member. What is a complete set of profiles that must be configured for the virtual server to meet these requirements?. TCP, Client SSL, Server SSL. TCP , Server SSL, HTTP. TCP, Client SSL, HTTP. TCP, Client SSL, Server SSL, HTTP.

An LTM Specialist must reconfigure a BIG-IP LTM system that load balances traffic to web application servers. The application developer inform the LTM Specialist that TLS must be used to communicate with the application servers. Which additional profile is required as part of virtual server configuration?. SPDV profile. Server SSL. Client SSL. Rewrite profile.

An SSL application is being migrated to the LTM device. Both encrypted and unencrypted traffic are accepted by the server. The virtual server configuration is as follows: Which LTM device profile should be used on the LTM device to reduce the CPU load on the current. Protocol. serverssl. clientsssl. stream.

A BIG IP system load balances connections to a web application. A TCP-based Denial of Service attack against the web application is occurring, which has caused very high memory utilization on the LTM device due to stale TCP connections. Which TCP profile option should be used to reduce memory utilization?. Idle timeout. Reset on timeout. Slow Start. Multipath TCP.

An LTM device is configure with the wildcard virtual servers displayed below. A client connection is made to 172.24.31.14:443. VS_172_24_1_WILDCARD. VS_HTTP_WILDCARD. VS_172_24_WILDCARD. VS_HTTPS_WILDCARD.

An LTM Specialist needs to create an iRule that creates persistence records based on a JSESSIONID cookie. If a persistence record already exists, then the iRule must persist the client connection according to the existing record. Which persistence profile enables the iRule to meet these requirements?. Universal. SSL. Destination Address Affinity. Cookie. Source Address Affinity.

Exhibit. The LTM devices LTM1 and LTM2 are configured in a Device Group (Sync Failover) with Network Failover configured on both the management and HA and Internal VLANS. and ConfigSync is confined in a Device Group (Sync Failover) with Network Failover and internal are tagged on a single trunk with subnets Connection Mirroring is configured on both the HA interlace directly connected between LTM1 and LTM2, and the management interlace is connected to a management switch. The LTM devices have four Traffic Groups defined, and both LTM devices are healthy and capable of passing traffic for any of the Traffic Groups. An LTM Specialist disconnects the cable for the HA network in an effort to test failover. Which HA functionality works in this case?. ConfigSync does NOT work. Connection Mirroring floes NOT work. ConfigSync works Connection Mirroring works. ConfigSync works. Connection Mirroring docs NOT work. ConfigSync does NOT work; Connection Mirroring works.

What should an LTM Specialist configure on an LTM device to send AVR notification emails?. Email notification to be sent via iControl from the LTM device. Syslog on the LTM device to send to an SMTP server. Custom SNMP traps on the LTM device for AVR notifications. Email notification to be sent via SMTP from the LTM device.

A virtual server configuration for traffic destined to a server is as shown: VS Name Destination Service port Source MyVS1 10.10.20.1/32 80 0.0.0.0/0 MyVS2 10.10.20.1/32 * 10.10.10.0/24 MyVS3 10.10.20.1/32 80 10.10.10.0/25 MyVS4 10.10.20.0/24 21 0.0.0.0/0 HTTP traffic is destined to the 10 10.20.1 server from the source Based on precedence, which virtual server accepts this traffic?. MyvS1. MyvS2. MyvS3. MyvS4.

RADIUS authentication has been configured on the LTM device. The default remote user access requirements are as shown: * Read only access to the configuration Utility * Access to TMOS shell Which two items need to be configured in this situation? (Choose two). Console access is Advanced Shell. Console access is Read Only. Default remote user role is Guest. In Console access is TMSH. Default remote user role is Manager. Default remote user role is Operator.

An LTM Specialist needs to deploy a BIG-IP device in a two-arm topology, with external and internal VLANs. All pool members will reside on the internal VLAN and will use the BIG-IP as their default gateway. The BIG-IP must behave as an L3 routel for the pool member servers. Which virtual server type should the LTM Specialist create to meet this requirement?. Stateless wildcard. Performance L4. Forwarding Layer 2. IP forwarding wildcard.

An LTM Specialist needs to configure a pair of LTM devites so that the active device will fail to standby when the device's network connectivity to the Internal network fails. What should the LTM Specialist enable to complete this task?. VLAN Failsafe on the Internal VLAN. System Failsafe for the default gateway. HA Groups on the Internal VLANs. Network Failover and MAC Masquerade on the Internal VLAN.

An LTM Specialist is developing an iRule to collect the client certificate and insert it into a Layer 7 header. Which two profiles are required on the virtual server? (Choose two.). ClientSSL. Persistence. HTTP. HTML. ServerSSL.

A multi-tier web application uses a public-facing BIG-IP device for Internet clients, which forwards all traffic to an internal BIG-IP device. The public-facing virtual server uses OneConnect. How does this impact the cookie persistence configured on the internal BIG-IP device?. The internal BIG-IP device incorrectly persists sessions based on the cookie from individual users. The internal BIG-IP device correctly persists sessions based on the source address of individual users. The internal BIG-IP device Incorrectly persists sessions based on the source address of individual users. The internal BIG-IP device correctly persists sessions based on the cookie from individual users.

An LTM Specialist needs to apply a SNAT to a virtual Server that processes 65,000 concurrent connections. What should the LTM Specialist do?. Disable port translation. Disable address translation. Configure a new SNAT pool. Configure SNAT Automap.

An LTM Specialist must enable clients on one VLAN to automatically obtain IP addresses from a server in another VLAN. Which virtual server and settings should the LTM Specialist configure?. Stateless Virtual Server on both VLANs. Standard Virtual Server with Address Translation disabled. DHCP Virtual Server. Forwarding (IP) Virtual Server on the client VLAN.

An LTM Specialist is adding an HTML profile to a virtual server to alter the content of a web page. Which other configuration element is required?. Source Address Translation. HTTP Profile. SOCKS Profile. iRule.

An LTM Specialist needs to create a new account withe admin role called "newadmin" and access to all partitions. Which tmsh command should be executed?. Create /auth user newadmin partition-access add {all-partitions {role admin } } prompt-for-password. Modify /Itm user newadmin partition-access add {all-partitions { role admin } } prompt-for-password. Create /sys user newadmin partition-access add { all-partitions {role admin } }prompt-for- password. Modify/sys user newadmin partition-access add {all-partitions { role admin } } prompt-for-password.

A pool on an active BIG-IP device only has one pool member that passes its health checks. The standby BIG-IP device has multiple pool members that pass their health checks. Which feature can the LTM Specialist use to make sure the BIG-IP device with the greatest number of available pool members receives traffic?. Priority group activation. HA groups. Fallback server. Traffic groups.

Which action enables distribution of DNS traffic (udp) on a request-by-request basis for a virtual server?. Decrease the Idle Timeout in the udp profile. Use DNS Express in the DNS profile. Enable Datagram LB in the udp profile. Remove any persistence profile.

The LTM Specialist is working on a virtual server with a source address persistence profile. Maintenance is needed on one of the pool members attached to that virtual server. The LTM Specialist disables the pool member. Several hours later, the pool member still has active connections. What should the LTM Specialist do?. Change the pool configuration "action on server down" to reject. Change the pool configuration "slow ramp time" to zero. Change the pool member state to Forced offline. Change the virtual server state to Disabled.

An LTM Specialist needs to remove the virtual-disk for a vCMP guest. Which state does the VCMP guest need to be in to perform this task?. Delete. Deploy. Configure. Provision.

An LTM Specialist needs to load balance a pool of DNS servers that will accept both UDP and TCP queries. Which prerequisite must the LTM Specialist satisfy in order to load balance the pool?. License and provision the DNS Services module. Configure both UDP and TCP Virtual Servers. License and provision the GTM module. Configure and assign a DNS profile to virtual servers.

For what purpose should an LTM Specialist create an App template?. For a customized consistent configuration that will be deployed multiple times. For a configuration that would only serve traffic for a specific group of people. For a configuration that restricts editing to a specific group of people. For a customized configuration that will only be deployed for a specific service.

An LTM Specialist wants to use an iRule to select a pool based on the URI that the client requests. Which profile must be enabled on the virtual server to allow this?. HTTP. HTML. OneConnect. Web Acceleration.

An LTM Specialist applies an ICMP monitor at the node Jevel with the default settings listed below. Interval = 5 seconds Timeout = 16 seconds Manual Resume = No What series of outcomes will result in the node being marked down?. timeout, timeout, succeed, timeout, succeed, timeout, timeout. succeed, timeout, succeed, succeed, timeout, timeout. succeed, timeout, timeout, timeout, timeout, succeed, succeed. timeout, timeout, succeed, succeed, timeout, succeed.

An LTM Specialist needs to prevent traffic from clienf bubinet 192.168.100.0 255.255.255.0 from accessing the virtual server. The LTM Specialist creates a new virtual server and changes the virtual server type to reject. What source address change also needs to be configured?. Set the source address to 0.0.0.0/0. Set the source address to 192.168.100.0/24. Set the source address to 192.168.100.0/32. Set the Source address to 192.168.100.100/32.

A pool is configured with several application servers. Not all pool members are on a directly connected subnet. What action should the LTM Specialist take to configure a virtual server for this application?. Enable SNAT Automap. Disable Source Address Translation. Disable Address Translation. Enable a OneConnect Profile.

Requests and responses to a pool of ICAP servers must be load balanced for web content filtering before returning the modified content to their intended destinations. Which virtual server type is appropriate for these requirements?. Stateless. Performance (Layer 4). Standard. Internal.

An LTM Specialist creates the following iRule to modity the links within/a site from HTTP to HTTPS. when HTTP_REQUEST { STREAM::disable } when HTTP_RESPONSE { if {[HTTP::header value Content-Type] contains "text"}{ STREAM::expression "@http://@https://@" STREAM::enable } } Which profile is required for this iRule to function properly?. ClientSSL. HTML. ServerSSL. Stream.

An LTM Specialist receives reports that servers that are brought back online after maintenance are being overloaded with too many requests per second. The load balancing method can NOT be changed. Which setting should be modified without negatively affecting user traffic?. Enable Request Queuing. Increase Slow Ramp Time. Increase Member Connection Limit. Increase Pool Reselect Tries.

An LTM Specialist needs to minimize dropped packets during a traffic group failover event. What should the LTM Specialist configure in this situation?. MAC masquerade. Load aware failover. HA groups. Proxy ARP.

An email application consists of four servers. The application needs to be set up and accessed via two virtual servers on tcp/25 (SMTP) and tcp/587 (SMTPS) The application needs traffic to persist to a pool member for a certain amount of time to detect malicious behavior. Encrypted traffic for SMTPS will be terminated on the application instead of the LTM device. Which combination of profiles and persistence meets this requirement?. tcp, clientssl, smtps, dest _addr persistence. tcp, smtp, smtps, dest _addr persistence. tcp, fastl4, source addr persistence. tcp, clientssl, smtp, serverssi, source_addr persistence.

An LTM Specialist is almost finished deploying a new SIP application. The LTM Specialist tests the deployment and notices that traffic falls if more than one member is in the pool. Which action must the LTM Specialist take to resolve this issue?. Create and attach a Diameter profile. Create and attach a custom LDAP profile. Create and attach an MBLB profile. Create and attach a custom HTTP profile.

A new SSL certificate is being installed for an existing web application. The certificate is signed by an intermediate certificate, and the CA has provided the intermediate certificate. Which action should be taken?. Import the intermediate certificate, and add it to the client SSL profile certificate chain. Import the root CA certificate on the users desktops. Import the intermediate certificate, and add it to the server SSL profile. Import the intermediate certificate, and add it to the Trusted Certificate Authorities.

An LTM Specialist needs to configure an HTTPS virtual server to send encrypted traffic to the application server, Pool selection will be performed in an iRule using the requested URI. Which set of profiles must be configured on the virtual server to accomplish this?. Client SSL Profile, Server SSL Profile. Source Address Translation, Server SSL Profile. Client SSL Profile, Source Address Translation. Client SSL Profile, HTTP Proxy ConnectProfile.

Denunciar Test