Dumps Moneyack Guarantee - 303 Dumps UpTo 50% Off [Q276-Q299]

Share

Dumps Moneyack Guarantee - 303 Dumps UpTo 50% Off

Updated Nov-2021 Pass 303 Exam - Real Practice Test Questions

NEW QUESTION 276
A web developer needs a virtual server configured for an application.
The application details are asfollows:
Application is accessed on port 443.
The application traffic is encrypted by the server.
HTTP is not being used. No data manipulation is necessary.
Throughput is critical.
NO connections are terminated on the LTM.
Which configuration provides thebest performance?
A)

B)

C)

D)

  • A. Option
  • B. Option
  • C. Option
  • D. Option

Answer: C

 

NEW QUESTION 277
A BIG-IP Administrator discovers malicious brute-force attempts to access the BIG-IP device on the management interface via SSH. The BIG-IP Administrator needs to restrict SSH access to the management interface.
Where should this be accomplished?

  • A. Network > Self IPs
  • B. System > Configuration
  • C. System > Platform
  • D. Network > Interfaces

Answer: C

 

NEW QUESTION 278
Consider the monitor configuration displayed below.

What is the status of a pool member that responds with ''200 OK''?

  • A. disabled
  • B. available
  • C. unknown
  • D. down

Answer: D

 

NEW QUESTION 279
An LTM device has been configured to log the reasons for generating TCP RST packets.
The following log entry occurs:
"01230140:3: RST sent from 192.168.1.100:80 to 192.168.1.124:39272, [0x112d82a:1721] {peer} TCP RST from remote system." Which condition will trigger this log entry?

  • A. The host at the other end terminated the TCP connection.
  • B. A virtual server connection limit has been reached.
  • C. The LTM device reset the connection because no pool members are available.
  • D. The LTM device has reached the maximum number of allowed attempts to send the data segment to the affected TCP connection.

Answer: A

 

NEW QUESTION 280
An LTM Specialist has just captured trace /var/tmp/trace.cap for site www.example.com while listening on virtual address 10.0.0.1:443 configured on partition ApplicationA. The data payload being captured is SSL encrypted.
Which command should the LTM Specialist execute to decrypt the data payload?

  • A. ssldump -Aed -nr /var/tmp/trace.cap -k
    /config/filestore/files_d/ApplicationA_d/certificate_d/:ApplicationA:www.example.com.crt_1
  • B. ssldump -Aed -nr /var/tmp/trace.cap -k
    /config/filestore/files_d/Common_d/certificate_d/:Common:www.example.com.crt_1
  • C. ssldump -Aed -nr /var/tmp/trace.cap -k
    /config/filestore/files_d/ApplicationA_d/certificate_key_d/:ApplicationA:www.example.com.key_1
  • D. ssldump -Aed -nr /var/tmp/trace.cap -k
    /config/filestore/files_d/Common_d/certificate_key_d/:Common:www.example.com.key_1

Answer: D

 

NEW QUESTION 281
The pool members are serving up simple static web content.
The current virtual server configuration is given as follows:
tmsh list ltm virtual simple
ltm virtual simple {
destination 10.10.10.10:80
ip-protocol tcp
mask 255.255.255.255
profiles {
http { }
httpcompression { }
oneconnect { }
tcp { }
}
snat automap
vlans-disabled
}
tmsh list ltm pool simple_pool
ltm pool simple_pool {
members {
10.10.10.11:80 {
address 10.10.10.11 }
10.10.10.12:80 {
address 10.10.10.12 }
10.10.10.12:80 {
address 10.10.10.13 }
}
}
Which three objects in the virtual server configuration can be removed without disrupting functionality of the virtual server? (Choose three.)

  • A. http
  • B. tcp
  • C. oneconnect
  • D. httpcompression
  • E. snat automap

Answer: A,C,D

 

NEW QUESTION 282
-- Exhibit -


-- Exhibit --
Refer to the exhibits.
An LTM device has been configured for load balancing a number of different application servers.
Configuration changes need to be made to the LTM device to allow administrative management of the servers in 172.16.10/24, 172.16.20/24, and 172.16.30/24 networks. The servers require outbound access to numerous destinations for operations.
Which solution has the simplest configuration changes while maintaining functionality and basic security?

  • A. Enable 172.16.10.0:0/24, 172.16.20.0:0/24, and 172.16.30.0:0/24 on ingress VLAN(s), and enable
    0.0.0.0:0/0.0.0.0 on egress VLAN(s).
  • B. Replace 172.16.10.0:0/24, 172.16.20.0:0/24, and 172.16.30.0:0/24, with 172.16.0.0:0/16, and keep
    0.0.0.0:0/0.0.0.0.
  • C. Remove 172.16.10.0:0/24, 172.16.20.0:0/24, and 172.16.30.0:0/24, and keep 0.0.0.0:0/0.0.0.0 enabled on all VLANs.
  • D. Enable 172.16.10.0:0/24, 172.16.20.0:0/24, and 172.16.30.0:0/24 on egress VLAN(s), and enable
    0.0.0.0:0/0.0.0.0 on ingress VLAN(s).

Answer: A

 

NEW QUESTION 283
Refer to the exhibit.

How many nodes are represented on the network map shown?

  • A. Three
  • B. Four
  • C. Two
  • D. One

Answer: A

 

NEW QUESTION 284
AN LIM Specialist must upgrade the VCMP Guest active/standby LTM pair from version 11.3 to 11.5.3 on two VCMP Hosts.
where should the LTM Specialist import the latest 11.5.3 ISO images?

  • A. to the VCMP Guest instances
  • B. to the secondary vCMP Host and the standby Guest instance
  • C. to both VCMP Hosts
  • D. to the primary VCMP Host and the active Guest instance

Answer: A

 

NEW QUESTION 285
An LTM Specialist upgrades the switchinginfrastructure and the backend servers on the LAN segments.
The LTM Specialist notices a 20% memory usage increase on the BIG-IP device while handling the same number of concurrent connections.
A comparison of statistics pre-upgrade and post-upgrade showsa significant reduction on the following:
-RTT between the BIG-IP device and the backend servers
-Packet drops in the switch
Time to First Byte (TTFB)
The LTM Specialist is concerned with the scalability of the number of concurrent connections with the newmemory usage.
Which setting should be changed to reduce the memory usage on the BIG-IP device?

  • A. Increase the receive window of the client-side TCP profile
  • B. Increase the proxy buffer high setting on the server-side TCP profile
  • C. Reduce the idle of the client-side TCP profile
  • D. Reduce the proxy buffer high setting on the server-side TCP profile

Answer: D

Explanation:
Explanation
After adjusting the architecture, the network quality becomes better. With the connection unchanged the memory usage increase by 20%. Itmeans that the sending speed of the server is higher than the receiving speed of the client. F5 caches more content on the memory and causes the memory usage to....

 

NEW QUESTION 286
-- Exhibit -


-- Exhibit --
Refer to the exhibits.
Which URL on which server is causing the highest latency for users?

  • A. /slow1.php on 172.16.20.3
  • B. /slow2.php on 172.16.20.1
  • C. /reflector.php on 172.16.20.2
  • D. /Compress.HTML on 172.16.20.1

Answer: A

 

NEW QUESTION 287
Refer to the exhibit.


During maintenance, the BIG-IP Administrator manually disables a pool member as shown.
What is the result?

  • A. The disabled pool member stops processing existing connections
  • B. All pool members continue to process persistent connections
  • C. All pool members stop accepting new connections.
  • D. The disabled pool member stops processing persistent connections.

Answer: B

 

NEW QUESTION 288
-- Exhibit -

-- Exhibit --
Refer to the exhibit.
A layer 2 nPath routing configuration has been deployed. A packet capture contains a client connection packet with the following properties:
Source IP: <Virtual Server>
Destination IP: <Client A>
At which two locations could the packet capture have been taken? (Choose two.)

  • A. the DMZ interface of the Internet firewall
  • B. the internal interface of the Internet firewall
  • C. the network interface of web server
  • D. the external VLAN interface of the LTM device

Answer: B,C

 

NEW QUESTION 289
The end users of a web application need to verify that their browsers received the complete message-body from the web server.
Which HTTP header will accomplish this?

  • A. Expect
  • B. Range
  • C. Accept-Ranges
  • D. Content-Length

Answer: D

 

NEW QUESTION 290
A BIG-IP system has the following configuration:
* SNAT is set to Auto Map
* There are two VLANs internal and external
* Default route is pointed to the gateway on external VLAN
* Self P for internal VLAN is 1921.1.2
* Self IP for external VLAN is 192.1.2.2
* Floating IP addresses for internal VLAN is 192.1.1.1
* Floating IP addresses for external VLAN is 192.1.2.1
* The Virtual Server IP address is 192.1.1.100
Which IP address does the BIG-IP system use first when traffic reaches the servers on the internal VLAN?

  • A. 192.1.1.1
  • B. 192.1.2.1
  • C. 192.1.2.2
  • D. 192.1.1.100

Answer: A

 

NEW QUESTION 291
Refer to the exhibit

Given the bigip conf extract shown where the servers only talk http on port 80, which node will receive thenext user request?

  • A. 10.1.1.1
  • B. 72.10.1.1
  • C. 10.1.1.3
  • D. 10.1.1.2 0

Answer: C

 

NEW QUESTION 292
-- Exhibit --

-- Exhibit --
Refer to the exhibit.
A company uses a complex piece of client software that connects to one or more virtual servers (VS) hosted on an LTM device. The client software is experiencing issues. An LTM Specialist must determine the cause of the problem.
The LTM Specialist is seeing a client source IP of 168.210.232.5 in the tcpdump. However, the client source IP is actually 10.123.17.12.
Why does the IP address of 10.123.17.12 fail to appear in the tcpdump?

  • A. Network Address Translation (NAT) has occurred in the path between the client and the LTM device.
  • B. The individual's data stream is being routed to the LTM device by a means other than the default route.
  • C. The LTM device performed NAT on the individual's IP address.
  • D. The Secure Network Address Translation (SNAT) pool on the virtual server is activated.

Answer: A

 

NEW QUESTION 293
An LTM Specialist is configuring a virtual server with an IP address.
Which configuration is unsupported?

  • A. Performance 14 virtual server with a FastHTTP profile
  • B. Standard virtual server with an HTTP profile
  • C. Performance 14 virtual server with an HTTP profile
  • D. Standard virtual server with a TCP profile

Answer: C

 

NEW QUESTION 294
A BIG-IP Administrator defines a device Self IP . The Self IP is NOT reachable from the network. What should the BIG-IP Administrator verify first?

  • A. The correct Trunk has been selected.
  • B. The correct VLAN has been selected.
  • C. Verify if auto last hop is disabled.
  • D. The correct interface has been selected.

Answer: B

 

NEW QUESTION 295
A new web application is hosted at www.example.net, but some clients are still pointing to the legacy web application at www.example.com.
Which iRule will allow clients referencing www.example.com to access the new application?

  • A. when HTTP_RESPONSE {
    if {[HTTP::host] equals "www.example.com" }{
    HTTP::redirect
    "http://www.example.net" }
    }
  • B. when HTTP_DATA {
    if {[HTTP::host] equals "www.example.*" }{
    HTTP::redirect
    "http://www.example.net" }
    }
  • C. when HTTP_REQUEST {
    if {[HTTP::host] equals "www.example.*" }{
    HTTP::redirect
    "http://www.example.net" }
    }
  • D. when HTTP_REQUEST {
    if {[HTTP::host] equals "www.example.com" }{
    HTTP::redirect
    "http://www.example.net" }
    }

Answer: D

 

NEW QUESTION 296
Which iRule will instruct the client's browser to avoid caching HTML server responses?

  • A. when HTTP_RESPONSE {
    if {[HTTP::header Content-Type] equals "html"} {
    HTTP::header insert Pragma "no-cache"
    HTTP::header insert Expires "Fri, 01 Jan 1990 00:00:00 GMT"
    HTTP::header replace Cache-Control "no-cache,no-store,must-revalidate"
    }
    }
  • B. when HTTP_REQUEST {
    if {[HTTP::header Content-Type] equals "html"} {
    HTTP::header insert Pragma "no-cache"
    HTTP::header insert Expires "Fri, 01 Jan 1990 00:00:00 GMT"
    HTTP::header replace Cache-Control "no-cache,no-store,must-revalidate"
    }
    }
  • C. when HTTP_REQUEST {
    if {[HTTP::header Content-Type] contains "html"} {
    HTTP::header insert Pragma "no-cache"
    HTTP::header insert Expires "Fri, 01 Jan 1990 00:00:00 GMT"
    HTTP::header replace Cache-Control "no-cache,no-store,must-revalidate"
    }
    }
  • D. when HTTP_RESPONSE {
    if {[HTTP::header Content-Type] contains "html"} {
    HTTP::header insert Pragma "no-cache"
    HTTP::header insert Expires "Fri, 01 Jan 1990 00:00:00 GMT"
    HTTP::header replace Cache-Control "no-cache,no-store,must-revalidate"
    }
    }

Answer: D

 

NEW QUESTION 297
To improve application security, an LTM Specialist must configure a BIG application access. The BIG IPsystem to authenticate the client certificate before permitting application access. The BIG-IP system must also support the ability to red to redirect users to a certificate enrolment system without generating a browser error.
Within the Client SSL profile, which value should the LTM Specialist select for the Client Certificate option?

  • A. Demand
  • B. Require
  • C. Request
  • D. ignore

Answer: B

 

NEW QUESTION 298
-- Exhibit -

-- Exhibit --
Refer to the exhibit.
Which pool can be removed without affecting client traffic?

  • A. ftp_pool
  • B. server_pool
  • C. server1_80
  • D. http_pool

Answer: B

 

NEW QUESTION 299
......

Download Free F5 303 Real Exam Questions: https://lead2pass.pdfbraindumps.com/303_valid-braindumps.html