New Year Sale Discount Flat 70% Offer - Ends in 0d 00h 00m 00s - Coupon code: 70diswrap

F5 F5CAB1 Dumps

Page: 1 / 5
Total 46 questions

BIG-IP Administration Install, Initial Configuration, and Upgrade Questions and Answers

Question 1

An organization is planning to upgrade a BIG-IP system from16.1.xto17.1.x.

For a successful upgrade, theService Check Datemust be equal to or newer than the License Check Date required for 17.1.x.

Which command will show the Service Check Date on the BIG-IP system being upgraded?

Options:

A.

grep "Service check date" /config/bigip.license

B.

grep "Service check date" /config/bigip.conf

C.

grep "Service check date" /config/svc_chk_date.dat

D.

grep "Service check date" /config/BigDB.dat

Question 2

What command will allow the BIG-IP Administrator to view theconfigured management IPof a BIG-IP system?

(Choose one.)

Options:

A.

tmsh show sys management-ip

B.

tmsh list sys management-ip

C.

tmsh list sys management-route

D.

tmsh list net self

Question 3

Which command will display thecurrent active volumeon a BIG-IP system?

Options:

A.

tmsh show sys version

B.

tmsh show sys software status

C.

tmsh list sys software update

Question 4

Which port is an exception to the Port Lockdown function of Self-IPs if a device-group synchronization cluster is configured?

Options:

A.

TCP 443

B.

TCP 4353

C.

UDP 53

Question 5

The BIG-IP Administrator received a ticket that an authorized user is attempting to connect to the Configuration Utility from a jump host and is being denied.

The HTTPD allow list is configured as:

sys httpd {

allow { 172.28.31.0/255.255.255.0 172.28.65.0/255.255.255.0 }

}

The jump host IP is172.28.32.22.

What command should the BIG-IP Administrator use to allow HTTPD access for this jump host?

Options:

A.

modify /sys httpd allow replace-all-with { 172.28.32.22 }

B.

modify /sys httpd allow delete { 172.28.31.0/255.255.255.0 172.28.65.0/255.255.255.0 }

C.

modify /sys httpd allow add { 172.28.32.22 }

Question 6

The BIG-IP Administrator uses Secure Copy Protocol (SCP) to upload a TMOS image to the/shared/images/directory in preparation for a TMOS upgrade.

After the upload is completed, what will the system dobeforethe image is shown in the GUI under:

System » Software Management » Image List?

Options:

A.

The system performs a reboot into a new partition

B.

The system verifies the internal checksum

C.

The system copies the image to /var/local/images/

Question 7

A BIG-IP Administrator discovers malicious brute-force attempts to access the BIG-IP device on themanagement interfacevia SSH.

The administrator needs to restrict SSH access to the management interface.

Where should this be accomplished?

Options:

A.

Network > Interfaces

B.

Network > Self IPs

C.

System > Configuration

D.

System > Platform

Question 8

The Port Lockdown feature prevents unwanted connection attempts to a Self IP.

Which three types of connection attempts areunaffectedby Port Lockdown settings?

Options:

A.

Defined virtual server traffic, Secure Shell (SSH), Centralized Management Infrastructure (CMI)

B.

Centralized Management Infrastructure (CMI), Secure Shell (SSH), Internet Control Message Protocol (ICMP)

C.

Defined virtual server traffic, Internet Control Message Protocol (ICMP), Centralized Management Infrastructure (CMI)

Question 9

Given thatBIGIP-<version>.isoandHotfix-BIGIP-<version>-ENG.isohave been uploaded to/shared/imageson an F5 device, what is the appropriatetmshcommand to prepare and update the BIG-IP device with thehotfixof a software version on anew volume HD1.2?

(Choose one.)

Options:

A.

tmsh install /sys software hotfix Hotfix-BIGIP--ENG.iso create-volume HD1.2

B.

tmsh install /sys software BIGIP-.iso hotfix Hotfix-BIGIP--ENG.iso create-volume HD1.2

C.

tmsh create /sys software hotfix Hotfix-BIGIP--ENG.iso volume HD1.2

D.

tmsh copy /sys software hotfix Hotfix-BIGIP--ENG.iso volume HD1.2

Question 10

A BIG-IP Administrator needs to install a HotFix on a standalone BIG-IP device, which hasHD1.1as the Active Boot Location.

The administrator has already re-activated the license and created a UCS archive.

In which sequence should the administrator perform the remaining steps?

Options:

A.

Install HotFix in HD1.2, Install base Image in HD1.2, Activate HD1.2

B.

Install HotFix in HD1.1, Reboot the BIG-IP device, Install UCS Archive

C.

Install base Image in HD1.2, Install HotFix in HD1.2, Activate HD1.2

D.

Activate HD1.2, Install base Image in HD1.2, Install HotFix in HD1.2

Question 11

An F5 BIG-IP Administrator is asked to report which modules areprovisionedon the BIG-IP.

In which two ways can this be done?

(Choose two.)

Options:

A.

Via the GUI atSystem → Resource Provisioning → Module Allocation

B.

Via TMSH withshow /sys provision

C.

Via the GUI atStatistics → Module Statistics → System

D.

Via TMSH withlist /sys provision

Question 12

The BIG-IP Administrator needs to update access to the Configuration Utility to include the172.28.31.0/24and172.28.65.0/24networks.

From the TMOS Shell (tmsh), which command should the BIG-IP Administrator use to complete this task?

Options:

A.

modify /sys httpd allow add { 172.28.31.0/255.255.255.0 172.28.65.0/255.255.255.0 }

B.

modify /sys httpd allow add { 172.28.31.0 172.28.65.0 }

C.

modify /sys httpd permit add { 172.28.31.0/255.255.255.0 172.28.65.0/255.255.255.0 }

Question 13

What will setting a Self IP to“Allow None”for Port Lockdown do?

Options:

A.

Block HA communications, causing the systems to report their peer as offline and go active-active.

B.

Block HA communications, causing the systems to report their peer as online ready.

C.

Default allow port 1026 access between peer devices and traffic processing across the network failover.

Page: 1 / 5
Total 46 questions