Get 303 Products Practice Material for 303 Exam Question Preparation [Q146-Q168]

Share

Get 303 Products Practice Material for 303 Exam Question Preparation

Most Reliable F5 303 Training Materials


F5 303 certification exam is recognized worldwide as a leading certification in the application security space. By earning this certification, IT professionals can enhance their career prospects and increase their earning potential. BIG-IP ASM Specialist certification also helps organizations identify individuals who have the knowledge and skills to implement and manage F5 BIG-IP ASM solutions effectively.

 

NEW QUESTION # 146
A new DNS virtual server has been configured. Testing reveals that DNS server has failed to accept DNS over TCP. The configuration of the virtual server is as follows:

Which action should be taken to correct this issue?

  • A. create a new virtual server with the service port of 53 and the protocol set to TC
  • B. add a TCP prone to the existing virtual server.
  • C. change the profile set on the virtual server To TCP/UDP
  • D. change the profile set on the virtual server to TCP

Answer: A


NEW QUESTION # 147
A web application is configured as follows:

What should be modified to set a maximum request limit?

  • A. Pool settings
  • B. Virtual server settings
  • C. HTTP profile
  • D. ICP Profile

Answer: C


NEW QUESTION # 148
There are three servers in the pool: 172.16.20.1, 172.16.20.2, and 172.16.20.3, with the virtual IP address
10.0.20.88.
A user CANNOT connect to an HTTP application. To understand the problem and find a solution, the LTM Specialist runs two concurrent traces on the LTM device, with the following results:
Trace on client side:
tcpdump: verbose output suppressed, use -v or -vv for full protocol decode listening on 0.0, link-type EN10MB (Ethernet), capture size 96 bytes
22:22:07.423759 IP 172.16.20.100.53875 > 10.0.20.88.80: S 998346084:998346084(0) win 5840 <mss
1460,sackOK,timestamp 67942058 0,nop,wscale 4>
22:22:07.424056 IP 10.0.20.88.80 > 172.16.20.100.53875: S 4671780:4671780(0) ack 998346085 win 4380
<mss 1460,nop,wscale 0,nop,nop,timestamp 2392362490 67942058,sackOK,eol>
22:22:07.424776 IP 172.16.20.100.53875 > 10.0.20.88.80: . ack 1 win 365 <nop,nop,timestamp 67942058
2392362490>
22:22:07.424790 IP 172.16.20.100.53875 > 10.0.20.88.80: P 1:149(148) ack 1 win 365 <nop,nop,timestamp
67942058 2392362490>
22:22:07.424891 IP 10.0.20.88.80 > 172.16.20.100.53875: . ack 149 win 4528 <nop,nop,timestamp
2392362491 67942058>
22:22:12.024850 IP 10.0.20.88.80 > 172.16.20.100.53875: R 1:1(0) ack 149 win 4528
6 packets captured
6 packets received by filter
0 packets dropped by kernel
Trace on server side:
tcpdump: verbose output suppressed, use -v or -vv for full protocol decode listening on internal, link-type EN10MB (Ethernet), capture size 96 bytes
22:22:07.424881 IP 172.16.20.100.53875 > 172.16.20.2.80: S 51116678:51116678(0) win 4380 <mss
1460,nop,wscale 0,nop,nop,timestamp 2392362491 0,sackOK,eol>
22:22:08.424893 IP 172.16.20.100.53875 > 172.16.20.2.80: S 51116678:51116678(0) win 4380 <mss
1460,nop,wscale 0,nop,nop,timestamp 2392363491 0,sackOK,eol>
22:22:09.625082 IP 172.16.20.100.53875 > 172.16.20.2.80: S 51116678:51116678(0) win 4380 <mss
1460,nop,wscale 0,nop,nop,timestamp 2392364691 0,sackOK,eol>
22:22:10.825194 IP 172.16.20.100.53875 > 172.16.20.2.80: S 51116678:51116678(0) win 4380 <mss
1460,sackOK,eol>
4 packets captured
4 packets received by filter
0 packets dropped by kernel
What should the LTM Specialist do to solve the problem?

  • A. Configure the virtual server to use SNAT.
  • B. Edit the packet filter rules.
  • C. Modify the monitor of the pool.
  • D. Enable the virtual server.

Answer: A


NEW QUESTION # 149
AN LTM Specialist needs to determine the delay between an LTM device and the internal web server for a specific client. Which two AVR reporting options should the LTM Specialist enable to measure the delay? (Choose two.)

  • A. Methods
  • B. Response codes
  • C. User agents
  • D. Server latency
  • E. Client IP

Answer: D,E

Explanation:
The problem is to specify the server delay of the client


NEW QUESTION # 150
An LTM Specialist upgrades the switching infrastructure and the backend servers on the LAN segments.
The LTM Specialist notices a 20% memory usage increase on the BIG-IP device while handling the same number of concurrent connections.
A comparison of statistics pre-upgrade and post-upgrade shows a significant reduction on the following:
- RTT between the BIG-IP device and the backend servers
- Packet drops in the switch
- Time to First Byte (TTFB)
The LTM Specialist is concerned with the scalability of the number of concurrent connections with the new memory usage.
Which setting should be changed to reduce the memory usage on the BIG-IP device?

  • A. Increase the receive window of the client-side TCP profile
  • B. Reduce the proxy buffer high setting on the server-side TCP profile
  • C. Reduce the idle of the client-side TCP profile
  • D. Increase the proxy buffer high setting on the server-side TCP profile

Answer: B

Explanation:
After adjusting the architecture, the network quality becomes better. With the connection unchanged the memory usage increase by 20%. It means that the sending speed of the server is higher than the receiving speed of the client. F5 caches more content on the memory and causes the memory usage to....


NEW QUESTION # 151
-- Exhibit -


-- Exhibit --
Refer to the exhibits.
How should the LTM Specialist minimize the configuration?

  • A. Create a single monitor and apply it to each pool member.
  • B. Create a single monitor, apply it to the pool, and remove the pool member level monitors.
  • C. The configuration is as minimized as possible.
  • D. Remove the pool member level monitors.

Answer: B


NEW QUESTION # 152
An LTM Specialist has detected that a brute force login attack is occurring against the SSH service via a BIG-IP management interface. Login attempts are occurring from many IPs within the internal company network. BIG-IP SSH access restrictions are in place as follows:

The LTM Specialist has determined that SSH access should only occur from the 192.168.1.0/24 and
172.16.254.0/23 networks.
Whichtmsh command should the LTM Specialist use to permit access from the desired networks only?

  • A. modify.sys sshd allow add {''192.168. 10/24 , '' ''172. 16 2540/23'')
  • B. modify/sys allow replace-all-with {''192.168.1.00/24'', ''192.16.254.0/23''}
  • C. modify/sys sshd login enable {''192.166.10/24'''' ''172.16 254 0/23
  • D. modify /sys sshd login disable (''10.0.00/8'', ''172 16.0 0/12'', ''192. 168.0.0/16'')

Answer: B

Explanation:
Explanation
Select C to overwrite the existing network's allow configuration over the specified network segment.


NEW QUESTION # 153
An LTM Specialist is configuring a client profile to offload processing a new application Company policy requires that clients can resume session for up to 30 minutes, but must renegotiate a new session after that.
Which setting should the LTM Specialist change to satisfy this requirement?

  • A. Renegotiate Max Record Delay
  • B. Cache timeout
  • C. Cachesize
  • D. Renegotiation period

Answer: B

Explanation:
Explanation
Question stem requires that you can resume SSL session within 30 minutes, then you need to define the ssl cache time in 30 minutes


NEW QUESTION # 154
A BIG-IP Administrator explicitly creates a traffic group on a BIG-IP device.
Which two types of configuration objects can be associated with this traffic group? (Choose two.)

  • A. VLANS
  • B. iRules
  • C. Application Instances
  • D. Virtual Addresses
  • E. Pool Members

Answer: C,D


NEW QUESTION # 155
-- Exhibit -


-- Exhibit --
Refer to the exhibits.
Which URL on which server is causing the highest latency for users?

  • A. /Compress.HTML on 172.16.20.1
  • B. /reflector.php on 172.16.20.2
  • C. /slow2.php on 172.16.20.1
  • D. /slow1.php on 172.16.20.3

Answer: D


NEW QUESTION # 156
-- Exhibit -

-- Exhibit --
Refer to the exhibit.
An LTM Specialist is investigating reports that users are unable to perform some commands through an FTP virtual server. The users are receiving the FTP error "500 Illegal PORT command." The virtual server is configured to SNAT using automap. The LTM Specialist performs a capture on the server side of the LTM device.
Why is the server returning this error?

  • A. Active IP address in LOGIN command
  • B. Active IP address in PORT command
  • C. PORT command disallowed
  • D. LIST command disallowed

Answer: B


NEW QUESTION # 157
A BIG-IP Administrator plans to upgrade a BIG-IP device to the latest TMOS version. Which two tools could the administrator leverage to verify known issues for the target versions? (Choose two.)

  • A. F5 University
  • B. F5 Bug Tracker
  • C. FSiHealth
  • D. F5 End User Diagnostics (EUD)
  • E. F5 Downloads

Answer: B,C

Explanation:
F5 University - F5 learning materials
F5 Downloads - iso download page
F5 End User Diagnostics (EUD) -- Hardware detection


NEW QUESTION # 158
A custom HTTP monitor is failing to a pool member 10.10.3.75:8080 that serves up www.example.com.
A ping works to the pool member address.
The SEND string that the monitor is using is: GET/HTTP/l.l/r/n/Host.www.example.com/r/n/Connection Close/r/n/r/n Which CLI tool syntax will show that the web server returns the correct HTTP response?

  • A. tracepath 10.10.3.75:8080 GET /index
  • B. tracepath
    'http://www.example.com:80
  • C. curlhttp://10.10.10.3.75:8080/www.example.com/index.html
  • D. curl-header
    'Host:www.example.com' http://10.10.3.75:8080/

Answer: D


NEW QUESTION # 159
An LTM Specialist is tasked with ensuring that the syslogs for the LTM device are sent to a remote syslog server.
The following is an extract from the config file detailing the node and monitor that the LTM device is using for the remote syslog server:
monitor
Syslog_15002 {
defaults from udp
dest *:15002
}
node 91.223.45.231 {
monitor Syslog_15002
screen RemoteSYSLOG
}
There seem to be problems communicating with the remote syslog server. However, the pool monitor shows that the remote server is up.
The network department has confirmed that there are no firewall rules or networking issues preventing the LTM device from communicating with the syslog server. The department responsible for the remote syslog server indicates that there may be problems with the syslog server. The LTM Specialist checks the BIG-IP LTM logs for errors relating to the remote syslog server. None are found. The LTM Specialist does a tcpdump:
tcpdump -nn port 15002, with the following results:
21:28:36.395543 IP 192.168.100.100.44772 > 91.223.45.231.15002: UDP, length 19
21:28:36.429073 IP 192.168.100.100.39499 > 91.223.45.231.15002: UDP, length 169
21:28:36.430714 IP 192.168.100.100.39499 > 91.223.45.231.15002: UDP, length 181
21:28:36.840524 IP 192.168.100.100.39499 > 91.223.45.231.15002: UDP, length 169
21:28:36.846547 IP 192.168.100.100.39499 > 91.223.45.231.15002: UDP, length 181
21:28:39.886343 IP 192.168.100.100.39499 > 91.223.45.231.15002: UDP, length 144 NotE. 192.168.100.100 is the self IP of the LTM device.
Why are there no errors for the remote syslog server in the log files?

  • A. When the remote syslog sever fails, it returns to service before the timeout for the monitor has expired.
  • B. The "verbose" logging option needs to be enabled for the pool.
  • C. The -log option for tcpdump needs to be used.
  • D. The monitor type used is inappropriate.

Answer: D


NEW QUESTION # 160
A BIG-IP Operator has made a grave error and deleted a few virtual servers on the active LTM device fronting the web browsing proxies. The BIG-IP Operator has NOT yet performed a configuration sync.
Which command should the LTM Specialist execute on the active LTM device to force a failover to the standby node and restore web browsing?

  • A. tmsh run /sys failover standby
  • B. tmsh /sys failover standby
  • C. tmsh run /sys failover status standby
  • D. tmsh /sys failover status standby

Answer: A


NEW QUESTION # 161
Which of the following is true when configuring a custom attack signature in BIG-IP ASM?

  • A. Custom signatures cannot be used with HTTP traffic
  • B. Custom attack signatures are automatically learned by the system
  • C. Custom signatures can only be created using regular expressions (regex)
  • D. Custom signatures allow for specific attack patterns not covered by predefined signatures

Answer: D


NEW QUESTION # 162
-- Exhibit -


-- Exhibit --
Refer to the exhibit.
An LTM Specialist is troubleshooting an HTTP monitor that is marking a pool member as down. Connecting to the pool member directly through a browser shows the application is up and functioning correctly.
ltm monitor http http_mon {
defaults-from http
destination *:*
interval 5
recv "200 OK"
send "GET /\\r\\n"
time-until-up 0
timeout 16
}
What is the issue?

  • A. The request is NOT being received by the pool member.
  • B. The pool member is responding without HTTP headers.
  • C. The pool member is responding with a 404.
  • D. The HTTP headers are compressed.

Answer: B


NEW QUESTION # 163
A BIG-IP Administrator finds the following log entry:
tnm tmm[7141]: 011e0002:4: sweeperjjpdate: aggressive mode activated.
Which action should the BIG-IP Administrator to mitigate this memory issue?

  • A. increase the TCP profile ide Timeout value
  • B. Decrease the TCP profile ide Timeout value
  • C. Configure the redundant par to be active-active
  • D. Configure the serve to use Connection Mirroring

Answer: D


NEW QUESTION # 164
A BIGJP Administrator needs to load a UCS file but must exclude the license file. How should the administrator perform this task?

  • A. From the CLI with command U tmsh load /$ys ucs <ucs filename> no-license
  • B. From the CLI with command(tmos) tmsh load /sys ucs <ucs filename> no-license
  • C. From the GUI, select the UCS file and click restore
  • D. From the GUI, select the UCS file, unchcck the license box, and click restore

Answer: A


NEW QUESTION # 165
A configuration change is made on the standby member of a device group.
What is displayed as "Recommended Action" on the Device Management Overview screen?

  • A. Activate device with the most recent configuration
  • B. Synchronize the active member configuration to the group.
  • C. Force active member of device group to standby
  • D. Synchronize the standby member configuration to the group

Answer: D


NEW QUESTION # 166
An LTM Specialist configures the following iRule on an LTM device:
when HTTP_REQUEST {
if {[string tolower [HTTP::uri]] contains "/URI1/" } {
pool Pool1
}
elseif {[string tolower [HTTP::uri]] contains "/URI2/" } {
pool Pool2
}
elseif {[string tolower [HTTP::uri]] contains "/URI3/" } {
pool Pool3
}
else { pool Pool4}
}
Given
the following request: http://www.example.comURI1/index.html?fu=bar
&pass=1234
Which pool will be selected by the iRule?

  • A. Pool3
  • B. Pool2
  • C. Pool1
  • D. Pool4

Answer: D


NEW QUESTION # 167
A virtual server is using a TCP profile based on the top-wan-optimized profile for a streaming application Users report videos are loading slowly. Which setting should be modified in the TCP profile to optimize the application?

  • A. Disable Slow Start
  • B. Disable Nagle's Algorithm
  • C. Disable Reset on Timeout
  • D. Disable Selective ACKs

Answer: A


NEW QUESTION # 168
......


F5 303 certification exam is a computer-based test that consists of multiple-choice questions. It is a proctored exam that is administered at Pearson VUE testing centers around the world. 303 exam is timed, with a total of 90 minutes given to complete the exam. Candidates must achieve a passing score of at least 69% to earn the certification.

 

LATEST 303 Exam Practice Material: https://lead2pass.pdfbraindumps.com/303_valid-braindumps.html