Black Friday Sale Special - Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: sntaclus

A BIG-IP Administrator needs to verify the state of equipment in the data center.

A BIG-IP appliance has asolid yellow indicatoron the status LED.

How should the administrator interpret this LED indicator?

A.

Appliance is halted or in End-User Diagnostic (EUD) mode

B.

Appliance is a standby member in a device group

C.

A warning-level alarm condition is present

D.

A power supply is NOT operating properly

An F5 VE has been deployed into a VMware environment via an OVF file.

An administrator wants to configure the management IP address so the VE can be accessed for further setup.

Which two are valid methods for configuring the management-ip address? (Choose two.)

A.

Log into the remote console and configure the management IP by running theconfigexecutable.

B.

Log into the remote console and configure the management IP through TMSH using:

create sys management-ip /

C.

Log into the remote console and configure the management IP through TMSH using:

create ltm management-ip /

D.

Log into the remote console and configure the management IP by running thesetupcommand.

A BIG-IP Administrator is responsible for deploying a new software image on an F5 BIG-IP HA pair and has scheduled a one-hour maintenance window.

With a focus on minimizing service disruption, which of the following strategies is the most appropriate?

A.

Update the active node first, reboot to the newly updated boot location and verify functionality, then push the update from the active to the standby node and reboot the standby node.

B.

Reset the Device Trust, apply the update to each node separately, reboot both nodes, then re-establish the Device Trust.

C.

Update the standby node first and reboot it to the newly updated boot location, failover to the newly updated node and verify functionality. Repeat the upgrade procedures on the next node, which is now in standby mode.

D.

Update both nodes in the HA pair, then reboot both nodes simultaneously to ensure they run the same software version.

What are the two options for securing a BIG-IP’s management interface?

(Choose two.)

A.

Limiting network access through the management interface to a trusted/secured network VLAN.

B.

Block all management-interface administrative HTTPS and SSH service ports to prevent access.

C.

Use the BIG-IP’s Self-IP addresses for administrative access rather than the management interface.

D.

Restrict administrative HTTPS and SSH access to specific IP addresses or IP ranges.

The BIG-IP Administrator wants to manage the newly built F5 system through anin-band Self-IP.

The administrator has configured a VLAN and Self-IP and can ping the IP from their workstation, but cannot access the system viaSSHorHTTPS.

Whatport lockdownsettings should the BIG-IP Administrator use to allow management access on the Self-IP?

(Choose two.)

A.

The Self-IP port lockdown behavior could be adjusted toAllow Default

B.

The Self-IP port lockdown behavior could be adjusted toAllow All

C.

The Self-IP port lockdown behavior could be adjusted toAllow Mgmt

D.

The Self-IP port lockdown behavior could be adjusted toAllow Management

What will setting a Self IP to“Allow None”for Port Lockdown do?

A.

Block HA communications, causing the systems to report their peer as offline and go active-active.

B.

Block HA communications, causing the systems to report their peer as online ready.

C.

Default allow port 1026 access between peer devices and traffic processing across the network failover.

Refer to the exhibit.

An organization has purchased a BIG-IP license that includes all available modules but has chosen to provision only the modules they require.

The exhibit displays the current resource allocation from theSystem → Resource Provisioningpage.

Based on the information provided, which F5 modules have been provisioned?

A.

LTM, APM

B.

DNS, APM

C.

LTM, DNS, APM

D.

TMM, DNS, APS

The BIG-IP Administrator needs to update access to the Configuration Utility to include the172.28.31.0/24and172.28.65.0/24networks.

From the TMOS Shell (tmsh), which command should the BIG-IP Administrator use to complete this task?

A.

modify /sys httpd allow add { 172.28.31.0/255.255.255.0 172.28.65.0/255.255.255.0 }

B.

modify /sys httpd allow add { 172.28.31.0 172.28.65.0 }

C.

modify /sys httpd permit add { 172.28.31.0/255.255.255.0 172.28.65.0/255.255.255.0 }

The BIG-IP Administrator uses Secure Copy Protocol (SCP) to upload a TMOS image to the/shared/images/directory in preparation for an upgrade.

After the upload is complete, what will the system dobeforethe image appears in the GUI under:

System » Software Management » Image List?

A.

The system performs a reboot into the new partition

B.

The system verifies the internal checksum

C.

The system copies the image to /var/local/images/

A BIG-IP Administrator needs to install aHotFixon a standalone BIG-IP device.

The device currently hasHD1.1as the Active Boot Location.

The administrator has already reactivated the license and created a UCS archive.

In which sequence should the administrator perform theremaining steps?

A.

Install HotFix in HD1.2, Install base Image in HD1.2, Activate HD1.2

B.

Install HotFix in HD1.1, Reboot the BIG-IP device, Install UCS Archive

C.

Install base Image in HD1.2, Install HotFix in HD1.2, Activate HD1.2

D.

Activate HD1.2, Install base Image in HD1.2, Install HotFix in HD1.2