301a Practice Exam Tests Latest Updated on Sep-2021
Pass 301a Exam in First Attempt Guaranteed Dumps!
NEW QUESTION 63
Refer to the Exhibit.
An LTM Specialist notices that two members in a pool are overloaded. To relive the existing members a fourth member (10.128.20.14) is brought up.
How many member will receive and process new connections?
- A. 0
- B. 1
- C. 2
- D. 3
Answer: C
NEW QUESTION 64
One LTM device in an HA pair of LTM devices is unable to reach its default gateway. An HA Failover event needs to happen.
Which configuration item enables this behavior?
- A. Gateway pool monitor
- B. iRule
- C. Gateway pool
- D. Gateway Fail Safe
Answer: D
NEW QUESTION 65
A design requires the LTM device to become HA standby when the one of the two physical interface on the External trunk is down the External trunk is an interface on the External VLAN Which TMOS command enables this behavior?
- A. tmsh create sys ha-group External trunks add External threshold 2 weight 101)
- B. tmsh create sys ha-group External trunks add Externally
- C. tmsh modify net van External failsafe enabled
- D. tmsh create sys ha-group External trunks add ( External( attribute percent up-members 100))
Answer: A
NEW QUESTION 66
Refer to the exhibit.
A pool is contoured with four members. A user has a current connection established with 10.18.1.40. The virtual server has a persistence Profile configured.
- A. 10.18.1.20
- B. 10.18.1.10
- C. 10.18.1.30
- D. 10.18.1.40
Answer: D
NEW QUESTION 67
The web application team requests help from the LTM Specialist to Improve the performance of their web sites that are load balanced by the F5 LTM device with a Standard Virtual Server.
Which virtual server type will improve the performance of the web application servers?
- A. Forwarding (IP)
- B. Performance (HTTP)
- C. Performance (Layer 4)
- D. Stateless
Answer: B
NEW QUESTION 68
A custom TCP application using a single server is being migrated to the LTM device. A server is being added to the pool. The application is known to violate the TCP protocol RFC. The application currently works without error from a user perspective.
Which virtual server type is appropriate in this situation?
- A. Standard-tcp profile exists, RFC verification will be performed
- B. Performance (Layer 4)-pure layer A forwarding
- C. Stateless TCP protocol is not applicable
- D. forwarding (Layer 2) pure routing forwarding, pool cannot be specified
Answer: B
NEW QUESTION 69
An LTM is configure an application that is separated into several subdomains across multiple virtual servers. Many of these subdomains require encryption and could be accessed by anyone on the internet. The configuration must NOT result in SSL warnings to end users.
How should the LTM Specialist configure the SSL profiles for these virtual servers?
- A. Obtain an SSL certificate for each subdomain, make a ServerSSL profile for each subdomain, and apply to the related SSL Virtual Server.
- B. Create a self-singed SSL certificate for each subdomain make a ClientSSL profile for each subdomain, and apply to the related SSL Virtual server
- C. Create a self-singed SSL certificate for each subdomain make a Client profile for each SSL Virtual Server
- D. Obtain a wildcard certificate, create one ClientSSL profile and apply to all SSL Virtual Servers
Answer: D
Explanation:
The topic is that there are multiple domain names in the business, and HTTPS services are provided to the internet, and users cannot be allowed to generate SSL alarms. The require client ssl and use CA certificate instead of self-singed certificate. And multiple domain names, you can use wildcard certificates.
NEW QUESTION 70
The picture belongs to static content, you can configure static content cache in FS to meet this demand An LTM Specialist must configure session persistence for a highly available, highly utilized web-based application.
* The following requirements are provided:
* http proxy setup for security
persistence information available to the HA peer in case of failover
The LTM Specialist needs to minimize additional burden on the LTM device to the greatest extent possible.
Which persistence profile should be used?
- A. Destination Address Affinity
- B. Universal
- C. Cookie insert
- D. Source Address Affinity
Answer: C
NEW QUESTION 71
An LTM Specialist has noticed in the audit log that there are numerous attempts to log into the Admin account. Theses attempts are sourced from a suspicious IP address range to the Configuration Utility of the LTM device.
How should the LTM Specialist block these attempts?
- A. add the suspicious source IP addresses to the httpd deny list via tmsh
- B. add the permitted source IP addresses to the httpd allow list via tmsh
- C. add the permitted source IP addresses to the allow list via Configuration Utility
- D. add the suspicious source IP addresses to the httpd deny list via Configuration Utility
Answer: B
NEW QUESTION 72
A customer wants to select the pool for an application based on information found in the path of the URL.
For example:
http://www.example.com/app 1 should be sent to the app 1 pool
http.//www.exampie.com/app 2 should be sent to the app2 pool
Which two profiles need to be assigned to the virtual server? (Choose two.)
- A. TCP
- B. HTTP
- C. Persistence
- D. Client SSL
- E. TTP Compression
Answer: A,B
NEW QUESTION 73
An LTM Specialist needs to add a pool that will load balance MYSOL services. It has four members, each with differing hardware platforms. All pool members are already assigned to another pool for load balancing FTP traffic.
Which load balancing method is most effective when the LTM Specialist sets up the pool?
- A. Round Robin
- B. Observed (node)
- C. Predictive member)
- D. Least Connections (node)
Answer: B
NEW QUESTION 74
A VCMP guest has the following characteristics:
* Resources allocated for CPU memory, network interfaces, and disk space
* Virtual disk created
* The guest is NOT running
The guest is NOT running in which state is the VCMP guest
- A. Provisioned
- B. Configured
- C. Deployed
- D. Offline
Answer: A
NEW QUESTION 75
An LTM Specialist needs to apply SNAT using currently used SNAT pool to a new virtual server.
What needs to be completed before applying that configuration change?
- A. Verify that the IP address of the SNAT pool are in the same VLAN as the pool members.
SNAT does not need to in the same vlan or same network segment as the pool member, as long as the route is reachable , excluding C and D he connection information of the SNAT pool to avoid port exhaustion under high concurrency - B. Make sure that the BIG-IP device is NOT operating under heavy load during peak times
- C. Verify that the IP address of the SNAT pool are in the same subnet as the pool members
- D. Review connection for the selected SNAT pool and enlarge it if appropriate
Answer: D
NEW QUESTION 76
To improve application security, an LTM Specialist must configure a BIG application access. The BIG IP system to authenticate the client certificate before permitting application access. The BIG-IP system must also support the ability to red to redirect users to a certificate enrolment system without generating a browser error.
Within the Client SSL profile, which value should the LTM Specialist select for the Client Certificate option?
- A. Require
- B. Request
- C. ignore
- D. Demand
Answer: A
NEW QUESTION 77
Refer to the exhibit.
An LTM Specialist has multiple SNAT and virtual server objects configured as in the bigip.conf shown.
The LTM Specialist tests a connection from a client with. IP 172.163.31.11 to 192.168.0.100:80.
Which two objects will show an increase in Local Traffic statistics connections?
- A. VS_A&SNAT_B
- B. VS_B&SNAT_B
- C. VS_A & SNAT A
- D. VS_ B & SNAT A
Answer: A
NEW QUESTION 78
A new DNS virtual server has been configured. Testing reveals that DNS server has failed to accept DNS over TCP. The configuration of the virtual server is as follows:
Which action should be taken to correct this issue?
- A. add a TCP prone to the existing virtual server.
- B. change the profile set on the virtual server To TCP/UDP
- C. change the profile set on the virtual server to TCP
- D. create a new virtual server with the service port of 53 and the protocol set to TC
Answer: D
NEW QUESTION 79
An unwanted IP address tries to connect to the configuration utility via Self IP An LTM Specialist needs to block the attempts based on the IP address.
How should the ITM Specialist block the attempts without affecting other users?
- A. Port lockdown
- B. Device trust
- C. SSH IP allow list
- D. Packet filter
Answer: D
NEW QUESTION 80
A virtual server with SNAT automap enabled selects pool member 10.20.0.10.443 for the server-side flow. The client side flow source IP is 192.168.0.10 .
Which source IP should be expected in the server-side connection?
- A. 10.50.0.2
- B. 10.20.0.2
- C. 10.20.0.1
- D. 192.168.0.10
Answer: B
NEW QUESTION 81
A LTM device needs to load balance active and passive FTP traffic while using only a single virtual server.
Which virtual server type should an LTM Specialist configure on the LTM device?
- A. Standard
- B. Forwarding (Layer 2)
- C. Forwarding (IP)
- D. Stateless
- E. DHCP relay
Answer: C
NEW QUESTION 82
Exhibit.
The LTM devices LTM1 and LTM2 are configured in a Device Group (Sync Failover) with Network Failover configured on both the management and HA and Internal VLANS. and ConfigSync is confined in a Device Group (Sync Failover) with Network Failover and internal are tagged on a single trunk with subnets Connection Mirroring is configured on both the HA interlace directly connected between LTM1 and LTM2, and the management interlace is connected to a management switch. The LTM devices have four Traffic Groups defined, and both LTM devices are healthy and capable of passing traffic for any of the Traffic Groups.
An LTM Specialist disconnects the cable for the HA network in an effort to test failover.
Which HA functionality works in this case?
- A. ConfigSync does NOT work. Connection Mirroring floes NOT work.
- B. ConfigSync works Connection Mirroring works
- C. ConfigSync works. Connection Mirroring docs NOT work
- D. ConfigSync does NOT work; Connection Mirroring works
Answer: D
NEW QUESTION 83
An LTM device configuration is as shown:
An LTM device configuration is as shown
What should be the two expected outcomes based on this configuration? (Choose two.)
- A. A client session that has been idle for 16 minutes will be sent to the same pool member
- B. A client session that has been idle for 12 minutes will be sent to the same pool member
- C. A client session that has been idle for 48 minutes will be sent to the same pool members
- D. A client session that has been idle for 14 minutes will be balanced to a new pool member
- E. A client session that has been idle for 20 minutes will be balanced to a new pool member
Answer: B,E
NEW QUESTION 84
AN LTM Specialist receives reports that an external company application is having reliability issues. The F5 Administrator finds the following in /vat/log/ltm file.
The LTM Specialist determines that the F5 LTM device is entering into Aggressive Mode Adaptive Reaping, which is causing the site reliability issues.
What is the most likely reason that the LTM device has entered into Aggressive Mode Adaptive Reaping?
- A. The LTM device has not provisioned AVR.
- B. The LTM device exceeds licensed traffic limits.
- C. The site has too many licensed modules.
- D. The site is under DDOS attack
Answer: D
NEW QUESTION 85
An LTM Specialist is configuring a virtual server with an IP address.
Which configuration is unsupported?
- A. Performance 14 virtual server with an HTTP profile
- B. Standard virtual server with an HTTP profile
- C. Performance 14 virtual server with a FastHTTP profile
- D. Standard virtual server with a TCP profile
Answer: A
NEW QUESTION 86
Refer to the exhibit.
The http monitor is applied to a pool. All members are enabled. One server responds as follows.
What is the resulting status of this poo! member?
- A. Offline (Enabled)
- B. Offline (Disabled)
- C. Available (Enabled)
- D. Unavailable (Disabled)
Answer: A
Explanation:
The first picture "Send String" and "Receive String" are not clear. Send String should be "GOOD", the response packet does not contain this keyword. Receive Disable String is completely unclear. If the response packet contains the content of Receive Disable String at this time, it will be Available (Disabled), If the content of Receive Disable String is not included, then Offline (Enabled).
NEW QUESTION 87
......
LTM Specialist Free Certification Exam Material from PracticeDump with 150 Questions: https://www.practicedump.com/301a_actualtests.html
301a Dumps Full Questions - Exam Study Guide: https://drive.google.com/open?id=1ynqGbj6qeA9qcKE5wx_slRH6Xp2Gf-Jo