New 2021 201 Dumps for F5 Networks Certification Study Materials Certified Exam Questions and Answer
Realistic Verified 201 exam dumps Q&As - 201 Free Update
NEW QUESTION 94
You need to terminate client SSL traffic at the BIGElIP and also to persist client traffic to the same pool member based on a BIGElIP supplied cookie. Which four are profiles that would normally be included in the virtual server's definition. (Choose four.)
- A. CookieElBased Persistence
- B. HTTP
- C. TCP
- D. ClientSSL
- E. ServerSSL
- F. HTTPS
Answer: A,B,C,D
NEW QUESTION 95
Which statement is true concerning SNATs using automap.
Answer:
NEW QUESTION 96
When configuring a Virtual Server to use an iRule with an HTTP_REQUEST event, which lists required steps in a proper order to create all necessary objects.
- A. create the Virtual Server, create required pools, create the iRule, edit the Virtual Server
- B. create required pools, create a custom HTTP profile, create the iRule, create the Virtual Server
- C. create a custom HTTP profile, create required pools, create the Virtual Server, create the iRule
- D. create profiles, create the iRule, create required pools, create the Virtual Server
Answer: A
NEW QUESTION 97
What is required for a virtual server to support clients whose traffic arrives on the internal VLAN and pool members whose traffic arrives on the external VLAN.
- A. The virtual server must be enabled on the external VLAN.
- B. The virtual server must be enabled for both VLANs.
- C. The virtual server must be enabled on the internal VLAN.
- D. That support is never available.
Answer: C
NEW QUESTION 98
A BIG-IP Administrator wants to add a new Self IP to the BIG-IP device. Which item should be assigned to the new Self IP being configured?
- A. VLAN
- B. Interface
- C. Route
- D. Trunk
Answer: A
NEW QUESTION 99
Refer to the exhibit.
How long will the persistence record remain in the table?
- A. 300 seconds after the last packet
- B. 180 seconds after the initial table entry
- C. 180 seconds after the last packet
- D. 300 seconds after the initial table entry
Answer: A
NEW QUESTION 100
A development team needs to apply a software fix and troubleshoot one of its servers. The BIG-IP Administrator needs to immediately remove all connections from the BIG-IP system to the back end server. The BIG-IP Administrator checks the Virtual Server configuration and finds that a persistence profile is assigned to it. What should the 8IG-IP Administrator do to meet this requirement?
- A. Set the pool member to a Disabled state and manually delete existing connections through the command line.
- B. Set the pool member to a Forced Offline state and manually delete easting connections through the command line.
- C. Set the pool member to a Forced Offline state.
- D. Set the pool member to a Disabled state.
Answer: B
NEW QUESTION 101
Refer to the exhibit.
Which Pool Members are receiving traffic?
- A. serv1, serv3
- B. Serv1, serv2,serv3, serv4
- C. serv1
- D. serv1, serv3, serv4
Answer: D
NEW QUESTION 102
A BIG-IP Administrator creates a new VLAN on BIG-IP Cluster Member A and attaches an Interface to it.
Although the Auto Config Sync is in place, the new VLAN does NOT show up on Cluster Member B. What should the BIG-IP Administrator do to ensure the new VLAN is configured on each Cluster Member?
- A. Enable the Interface that is attached to the new VLAN on Cluster Member A.
- B. Configure the new VLAN manually on Cluster Member B.
- C. Reset the Device Trust of the BIG-IP Cluster on either Cluster Member.
- D. Configure a Default Route for the new VLAN on Cluster Member A.
Answer: B
NEW QUESTION 103
Refer to the exhibit.
An organization is reporting slow performance accessing their Intranet website, hosted in a public cloud. All employees use a single Proxy Server with the public IP of 104.219.110.168 to connect to the Internet. What should the BIG-IP Administrator of the Intranet website do to fix this issue?
- A. Change Fallback Persistence Profile to source_addr
- B. Change Source Address to 104.219.110.168/32
- C. Change Default Persistence Profile to cookie
- D. Change Load Balancing Method to Least Connection
Answer: C
NEW QUESTION 104
Refer to the exhibit.
A user attempts to connect to 10.10.10.1.80 using FTP over SSL with an FTPS client. Which virtual server will match and attempt to process the request?
- A. nvfs
- B. vs_ftp
- C. vs_http
- D. vsjutps
Answer: B
NEW QUESTION 105
A virtual server is defined per the charts. The last five client connections were to members C, D, A, B, B . Given the conditions shown in the above graphic, if a client with IP address 205.12.45.52 opens a connection to the virtual server, which member will be used for the connection.
- A. 172.16.20.1:80
- B. 172.16.20.3:80
- C. 172.16.20.2:80
- D. 172.16.20.5:80
- E. 172.16.20.4:80
Answer: E
NEW QUESTION 106
A 816-IP Administrator recently deployed an application Users are experiencing slow performance with the application on some remote networks.
Which two modifications can the BIG-IP Administrator make to address this issue? (Choose two)
- A. Apply dest addr profile to the Virtual Server
- B. Apply f5-tcp-wan profile to the Virtual Server
- C. Apply fasti_4 profile to the Virtual Server
- D. Apply f5-tcp-lan profile to the Virtual Server
- E. Apply source_addr profile to the Virtual Server
Answer: B,D
NEW QUESTION 107
When using the setup utility to configure a redundant pair, you are asked to provide a "Failover Peer IP". Which address is this.
- A. an address on the current
system used to
initiate mirroring
and network failElover heartbeat messages - B. an address of the other system in its management network
- C. an address of the other system in a redundant pair configuration
- D. an address on the current system used to listen for failElover messages from the partner BIGIP
Answer: C
NEW QUESTION 108
Refer to the exhibit.
Which TMSH command generated this output?
- A. tmsh show /cm sync status
- B. tmsh list /cm sync-status
- C. tmsh list /sys sync-status
- D. tmsh show /sys sync-status
Answer: A
NEW QUESTION 109
For a given Virtual Server, the BIG-IP must perform SSL Offload and negotiate secure communication overTLSvl.2only.
What should the BIG-IP Administrator do to meet this requirement?
- A. Configure a custom SSL Profile (Client) and select no TLSvl in the options list
- B. Configure a custom SSL Profile (Client) with a custom TLSV1.2 cipher string
- C. Configure a custom SSL Profile (Server) with a custom TLSV1.2 cipher string
- D. Configure a custom SSL Profile (Server) and select no TLSvl in the options list
Answer: B
Explanation:
Explanation
no TLSvl only disables TLS1.0, TLS1.1 is still used and does not meet the requirements.
NEW QUESTION 110
Refer to the exhibit.
A user notifies the BIG-IP Administrator that http://remote company.com is NOT accessible. Remote access to company resources must be encrypted.
What should the BIG-IP Administrator do to fix the issue?
- A. Change the Listening Port on remote.company.com_vs to Port 80
- B. Add a Pool to the Virtual Server remote.company.com_VS
- C. Change the Type of the Virtual Server remote.company.com_vs to Forwarding Requiring all traffic to be HTTPS access requires HTTP requests to be redirected directly to HTTPS.
- D. Add an iRule to remote.company.com_vs to redirect Traffic to HTTPS
Answer: D
NEW QUESTION 111
What is the purpose of floating selfElIP addresses?
- A. to define an address that allows either system to initiate communication at any time
- B. to define an address that allows network devices to route traffic via a single IP address
- C. to define an address that grants administrative access to either system at any time
- D. to define an address that gives network devices greater flexibility in choosing a path to forward traffic
Answer: B
NEW QUESTION 112
A BIGElIP has
two load balancing
virtual servers at 150.150.10.10:80 and
150.150.10.10:443. The port 80 virtual
server has SNAT
automap
configured. There is also a SNAT configured at 150.150.10.11 set for a source address range of
200.200.1.0 / 255.255.255.0. All other settings are at their default states. If a client with the IP address 200.200.1.1 sends a request to https://150.150.10.10, what is the source IP address when the associated packet is sent to the pool member.
- A. Floating self IP address on VLAN where the packet leaves the system
- B. 200.200.1.1
- C. Floating self IP address on VLAN where the packet arrives on the system
- D. 150.150.10.11
Answer: D
NEW QUESTION 113
Given that VLAN failElsafe is enabled on the external VLAN and the network that the active BIGIP's external VLAN is connected to has failed, which statement is always true about the results.
- A. The active system will restart the traffic management module to eliminate the possibility that BIGElIP is the cause for the network failure.
- B. The active system will note the failure in the HA table.
- C. The active system will failElover and the standby system will go into active mode.
- D. The active system will reboot and the standby system will go into active mode.
Answer: B
NEW QUESTION 114
A BIG-IP Administrator plans to upgrade a BIG-IP device to the latest TMOS version.
Which two tools could the administrator leverage to verify known issues for the target versions?
(Choose two.)
- A. F5 End User Diagnostics (EUD)
- B. F5 University
- C. F5 Downloads
- D. FSiHealth
- E. F5 Bug Tracker
Answer: D,E
Explanation:
Explanation
F5 University -- F5 learning materials
F5 Downloads - iso download page
F5 End User Diagnostics (EUD) -- Hardware detection
NEW QUESTION 115
......
Use Real 201 Dumps - 100% Free 201 Exam Dumps: https://www.pass4surecert.com/F5/201-practice-exam-dumps.html
201 Exam Dumps, Test Engine Practice Test Questions: https://drive.google.com/open?id=13J89zRCHi0wiMaWDTEwfcG3sHDpbGRLj