The Most Efficient 101 Pdf Dumps For Assured Success [2022]
We offers you the latest free online 101 dumps to practice
The F5 101 exam is part of the F5 certification path that assists specialists in developing their skillset in key F5 products and solutions. The program itself is progressive, serving as an instrument to become more adept in F5 administration, product specialization, sales, cloud, and security at every level. And 101 or Application Delivery Fundamentals test is the first step of the Certified Administrator or Certified Technical Professional certification track, which takes on your fundamental knowledge of Application Delivery Networks, or ADNS. Accordingly, the completion of this exam unlocks higher-level certificates offered by the vendor.
NEW QUESTION 46
The BIG-IP full proxy architecture has full visibility from the client to the server and from the server to the client.
What security benefit does this provide to customers?
- A. Provides industry-leading knowledge of application behavior as it travels through a network, and it applies that knowledge to security because it knows how an application behaves at any point in the reply request process
- B. Establishes highly detailed policies based on your customer's business in requirements, performs multiple factors of authentication, detects corporate versus non-corporate devices, checks OS patch levels, and determines antivirus patch levels.
- C. provides enhanced support for DNS servers.
- D. Offloads security functionality fromother devices such as network firewalls and Intrusion Prevention Systems (IPS), which may experience performance degradation when inspecting DNS queries and responses.
Answer: A
Explanation:
Explanation/Reference:
Explanation:
NEW QUESTION 47
You need to terminate client SSL traffic at the BIG-IP and also to persist client traffic to the same pool member based on a BIG-IP supplied cookie. Which four are profiles that would normally be included in the virtual server's definition. (Choose four.)
- A. HTTPS
- B. HTTP
- C. TCP
- D. CookieBased Persistence
- E. ServerSSL
- F. ClientSSL
Answer: B,C,D,F
NEW QUESTION 48
DRAG DROP
Match the security-related term with the correct definition.
1. Demilitarized zone (DMZ)
2. Denial of service (DoS)
3. DNS Express
4. DNS Security Extensions (DNSSEC)
5. Endpoint inspection
Select and Place:
Answer:
Explanation:
NEW QUESTION 49
What is the purpose of the IP addresses listed in the Trusted IP section when using Policy Builder?
- A. Incoming requests with these IP addresses will never get blocked by BIG-IP ASM.
- B. Incoming requests with these IP addresses will not be taken into account as part of the learning process, they will be allowed to do anything.
- C. Incoming requests with these IP addresses will automatically be accepted into the security policy, Policy Builder will validate that future requests with this traffic will not create a violation.
- D. Incoming requests with these IP addresses will be used by Policy Builder to create an alternate more advanced security policy, this additional policy will not be enabled unless forced by the administrator.
Answer: C
NEW QUESTION 50
ASM combined with LTM provides protection against:
- A. Layer 7 DoS attacks
- B. Layer 4 DoS attacks
- C. DDoS attacks
- D. All of the above
Answer: D
NEW QUESTION 51
GTM solves which three of these standard DNS limitations? (Choose three.)
- A. It can verify that a client does not have any viruses before sending the IP address.
- B. It has more complex load balancing methods.
- C. It can use HTTPS for the connection between itself and the client.
- D. It can verify that a host is available before resolving a host name for a client.
- E. It can ensure that clients remain at the same data center for stateful applications.
Answer: B,D,E
Explanation:
Explanation
GTM solves three of these standard DNS limitations
It can verify that a host is available before resolving a hostname for a client It can ensure that clients remain at the same data center for stateful applications It has more complex load balancing methods
NEW QUESTION 52
DRAG DROP
Place the following items in the order that the BIG-IP device uses when processing a packet.
Select and Place:
Answer:
Explanation:
NEW QUESTION 53
What occurs when a load command is issued?
- A. The running configuration is replaced by the any portion of the configuration files that are syntactically correct.
- B. The running configuration is loaded into files for storage.
- C. The running configuration is replaced by the configuration in the files, but only if they are syntactically correct.
- D. The running configuration is compared to the configuration in files and, when changes are noted, the version in the files is loaded over what is in money.
Answer: C
NEW QUESTION 54
How does the ARX eliminate the disruption caused by re-provisioning storage?
- A. By reducing the time necessary to run a complete backup.
- B. By allowing system administrators to apply policy to specific types data.
- C. By identifying data that has not been modified and moving it to a secondary tier.
- D. By automating capacity balancing and allowing seamless introduction of file systems into the environment after the ARX is installed.
Answer: D
Explanation:
Explanation/Reference:
NEW QUESTION 55
What is the main business driver for bringing Enterprise Manager into the network infrastructure?
- A. Consolidate management of BIG-IP devices
- B. Consolidate management of administrator and user accounts
- C. Consolidate management of access policies
- D. Consolidate management of licenses
- E. Consolidate management of SSL certificates
Answer: A
NEW QUESTION 56
Why is BIG-IP ASM ideally suited to protect against layer 7 attacks, including HTTP and HTTPS/SSL traffic, when compared to an intrusion prevention system (IPS)?
- A. An IPS doesn't have the visibility into HTTPS traffic. it doesn't understand what applications are in the network.
- B. An IPS can only look at overall traffic patterns; it doesn't understand what applications are in the network
- C. An IPS only focus op operating system attacks; it doesn't understand what application are in the network
- D. An intrusion prevention system (IPS) is base on Packet Filtering
Answer: B
Explanation:
Explanation/Reference:
Explanation:
NEW QUESTION 57
One reason APM beats the competition is its ability to perform both user authentication and authorization on a single device.
- A. True
- B. False
Answer: A
NEW QUESTION 58
An inline ASM configuration requires:
- A. None of the above
- B. Two network connections
- C. Two power supplies
- D. Two disk drives
Answer: B
Explanation:
Explanation/Reference:
NEW QUESTION 59
Ping and Traceroute outputs are provided for a connectivity issue.
What is the cause of these results?
- A. multiple paths toward the destination
- B. packets that are routed with a high metric
- C. routing loop
Answer: C
NEW QUESTION 60
As a full TCP proxy, LTM acts as the termination point for both requests from the client andresponses from the server.
- A. True
- B. False
Answer: A
NEW QUESTION 61
Which of the following user roles have access to make changes to security policies? (Choose 2)
- A. Guest
- B. Operator
- C. Web Application Security Editor
- D. Administrator
Answer: C,D
NEW QUESTION 62
Which three properties can be assigned to nodes. (Choose three.)
- A. load-balancing mode
- B. priority values
- C. connection limits
- D. health monitors
- E. ratio values
Answer: C,D,E
NEW QUESTION 63
Which is NOT a function of ASM?
- A. Parameter value enforcement
- B. Attack signature enforcement
- C. HTTP protocol enforcement
- D. Network security
Answer: D
Explanation:
Explanation/Reference:
Explanation:
NEW QUESTION 64
SIMULATION
The layer 3 security feature _______ Cookies that protects against SYN floods, DoS, and DDoS attacks.
(Fill in)
Answer:
Explanation:
contain / include
NEW QUESTION 65
......
101 PDF 100% Cover Real Exam Questions: https://www.pass4leader.com/F5/101-exam.html
F5 101 Real Exam Questions Guaranteed Updated Dump: https://drive.google.com/open?id=1JNtmJ7gqOFb8jxX6GlL3a6innkcC01wO