301b Exam Dumps Pass with Updated 2021 Certified Exam Questions
301b Exam Questions - Real & Updated Questions PDF
Recognizing the Certification’s Role
F5 301B exam is associated with the F5-CTS BIG-IP Local Traffic Manager certification. Earning it is the ideal way to perk-up the career of a professional who has already become an F5 accredited administrator and looking for further enhancement options. The ideal audience for this certificate includes seasoned networking specialists capable to conduct basic-to-advanced troubleshooting tasks, VPN implementation, and others.
NEW QUESTION 71
An LTM device is load balancing SIP traffic. An LTM Specialist notices that sometimes the SIP request is being load balanced to the same server as the initial connection.
Which setting in the UDP profile will make the LTM device more evenly distribute the SIP traffic?
- A. Set Timeout to Indefinite
- B. Disable Datagram LB
- C. Set Timeout to Immediate
- D. Enable Datagram LB
Answer: D
NEW QUESTION 72
-- Exhibit -
-- Exhibit --
Refer to the exhibit.
A client attempts to connect from a Google Chrome browser to a virtual server on a BIG-IP LTM. The virtual server is SSL Offloaded. When the client connects, the client receives an SSL error. After trying Mozilla Firefox and Internet Explorer browsers, the client still receives the same errors.
The LTM Specialist does an ssldump on the virtual server and receives the results as per the exhibit.
What is the problem?
- A. The BIG-IP LTM is NOT listening on port 443.
- B. The client needs to be upgraded to the appropriate cipher-suite.
- C. The BIG-IP LTM is NOT serving a certificate.
- D. The SSL key length is incorrect.
Answer: C
NEW QUESTION 73
A BIG-IP Operator has made a grave error and deleted a few virtual servers on the active LTM device fronting the web browsing proxies. The BIG-IP Operator has NOT yet performed a configuration sync.
Which command should the LTM Specialist execute on the active LTM device to force a failover to the standby node and restore web browsing?
- A. tmsh /sys failover status standby
- B. tmsh run /sys failover status standby
- C. tmsh /sys failover standby
- D. tmsh run /sys failover standby
Answer: D
NEW QUESTION 74
-- Exhibit -
-- Exhibit --
Refer to the exhibit.
An LTM Specialist configures a virtual server to load balance to a pool of FTP servers. File transfers are failing. The virtual server is configured as follows:
ltm virtual ftp_vs {
destination 10.10.1.103:ftp
ip-protocol tcp
mask 255.255.255.255
pool ftp_pool
profiles {
tcp { }
}
vlans-disabled
}
Which change will resolve the problem?
- A. Increase the TCP timeout value in the TCP profile.
- B. Enable loose initiation in the TCP profile.
- C. Add an FTP profile to the virtual server.
- D. Add an FTP monitor to the pool.
Answer: C
NEW QUESTION 75
-- Exhibit-
-- Exhibit --
Refer to the exhibit.
Based on the output of the tmsh interface show command, what is the issue?
- A. Flow Control is NOT configured on the management interface.
- B. There are too many drops on inbound traffic on interface 1.1.
- C. There is a duplex mismatch on the management interface.
- D. Interfaces 2.1 and 2.2 are defective and need replacement.
Answer: C
NEW QUESTION 76
-- Exhibit-
-- Exhibit -
Refer to the exhibit.
An LTM Specialist has a virtual server set up on the LTM device as per the exhibit. The LTM Specialist receives reports of intermittent issues. Some clients are connecting fine while others are failing to connect.
The LTM Specialist does a tcpdump on the relevant interfaces, with the following results extracted:
What is causing the intermittent issues?
- A. The default gateway is inaccessible from WS1.
- B. The pool members have been set up as an active/standby pair, with WS1 as the standby.
- C. The firewall is dropping the packets from WS1.
- D. The load balancing (LB) method is inappropriate.
Answer: A
NEW QUESTION 77
-- Exhibit-
-- Exhibit -Refer to the exhibits.
Every monitor has the same Send String, Recv String, and an Alias of *:*. The LTM Specialist simplifies the configuration to minimize the number of monitors.
How many unique monitors remain?
- A. 0
- B. 1
- C. 2
- D. 3
- E. 4
Answer: C
NEW QUESTION 78
-- Exhibit -
-- Exhibit --
Refer to the exhibit.
Users receive an error when attempting to connect to the website https://website.com. The website has a DNS record of 195.56.67.90. The upstream ISP has confirmed that there is nothing wrong with the routing between the user and the LTM device.
The following tcpdump outputs have been captured:
External Vlan, filtered on IP 168.210.232.5
00:25:07.598519 IP 168.210.232.5.33159 > 195.56.67.90.https: S 1920647964:1920647964(0) win 8192
<mss 1450,nop,nop,sackOK>
00:25:07.598537 IP 195.56.67.90.https > 168.210.232.5.33159: S 2690691360:2690691360(0) ack
1920647965 win 4350 <mss 1460,sackOK,eol>
00:25:07.598851 IP 168.210.232.5.33160 > 195.56.67.90.https: S 2763858764:2763858764(0) win 8192
<mss 1450,nop,nop,sackOK>
00:25:07.598858 IP 195.56.67.90.https > 168.210.232.5.33160: S 1905576176:1905576176(0) ack
2763858765 win 4350 <mss 1460,sackOK,eol>
Internal Vlan, filtered on IP 168.210.232.5
00:31:46.171124 IP 168.210.232.5.33202 > 192.168.100.20.http: S 2389057240:2389057240(0) win 4380
<mss 1460,nop,wscale 0,sackOK,eol>
What is the problem?
- A. The firewall is dropping the connection coming from the pool members returned to the client.
- B. The filters on the tcpdumps are incorrect.
- C. The DNS entry for website.com is incorrect.
- D. The subnet masks of the pool members of pool WebServices1 and the f5 'Internal' Vlan are incorrect.
- E. The virtual server 'WEBSERVICES1' is listening on the incorrect port.
Answer: A
NEW QUESTION 79
-- Exhibit- -- Exhibit -
Refer to the exhibit.
An LTM Specialist is troubleshooting an issue with SSL and is receiving the error shown when connecting to the virtual server. When connecting directly to the pool member, clients do NOT receive this message, and the application functions correctly. The LTM Specialist exports theappropriate certificate and key from the pool member and imports them into the LTM device. The LTM Specialist then creates the Client SSL profile and associates it with the virtual server.
What is the issue?
- A. The SSL certificate and key have expired.
- B. The client CANNOT verify the certification path.
- C. The SSL certificate and key do NOT match.
- D. The common name on the SSL certificate does NOT match the hostname of the site.
Answer: B
NEW QUESTION 80
Which iRule will instruct the client's browser to avoid caching HTML server responses?
- A. when HTTP_REQUEST {
if {[HTTP::header Content-Type] contains "html"} {
HTTP::header insert Pragma "no-cache"
HTTP::header insert Expires "Fri, 01 Jan 1990 00:00:00 GMT"
HTTP::header replace Cache-Control "no-cache,no-store,must-revalidate"
}
} - B. when HTTP_REQUEST {
if {[HTTP::header Content-Type] equals "html"} {
HTTP::header insert Pragma "no-cache"
HTTP::header insert Expires "Fri, 01 Jan 1990 00:00:00 GMT"
HTTP::header replace Cache-Control "no-cache,no-store,must-revalidate"
}
} - C. when HTTP_RESPONSE {
if {[HTTP::header Content-Type] contains "html"} {
HTTP::header insert Pragma "no-cache"
HTTP::header insert Expires "Fri, 01 Jan 1990 00:00:00 GMT"
HTTP::header replace Cache-Control "no-cache,no-store,must-revalidate"
}
} - D. when HTTP_RESPONSE {
if {[HTTP::header Content-Type] equals "html"} {
HTTP::header insert Pragma "no-cache"
HTTP::header insert Expires "Fri, 01 Jan 1990 00:00:00 GMT"
HTTP::header replace Cache-Control "no-cache,no-store,must-revalidate"
}
}
Answer: C
NEW QUESTION 81
-- Exhibit -
-- Exhibit -
Refer to the exhibit.
An LTM Specialist is troubleshooting an issue with an application configured on an LTM device. The application works properly when accessed directly via the servers; however, it does not work when accessed via the LTM device. The virtual server, 192.168.1.211:443, is configured to SNAT using the address 192.168.1.144 and references a pool with the member 192.168.10.80:443. The virtual server has no Client or Server SSL profiles associated.
Which configuration change will allow the application to function through the virtual server?
- A. Change pool member port to 8443.
- B. Add SSL off-loading to the pool member.
- C. Add Client and Server SSL profiles to the virtual server.
- D. Change virtual server port to 8443.
Answer: A
NEW QUESTION 82
Which iRule statement demotes a virtual server from CMP?
- A. set static::foo 123
- B. set ::foo 123
- C. persist source_addr 1800
- D. [ class match $HTTP_CONTENT contains my_data_class ]
Answer: B
NEW QUESTION 83
-- Exhibit --- Exhibit -Refer to the exhibit.
A company uses a complex piece of client software that connects to one or more virtual servers (VS) hosted on an LTM device. The client software is experiencing issues. An LTM Specialist must determine the cause of the problem. The LTM Specialist has the tcpdump extract. The client loses connection with the LTM device.
Where is the reset originating?
- A. the device initiating the connection
- B. the application server
- C. the local switch
- D. the destination device of the initial connection
Answer: A
NEW QUESTION 84
What is a benefit provided by F5 Enterprise Manager?
- A. Enterprise Manager allows administrators to monitor all application traffic. Configuration optimization suggestions based on the observed traffic patterns are then generated for the administrator to review and apply.
- B. Enterprise Manager allows administrators to establish baseline application usage and generate an alert if an administratively set threshold for the application is exceeded.
- C. Enterprise Manager allows administrators to identify application vulnerabilities. Virtual patches are then automatically generated and applied to remediate the detected application vulnerability.
- D. Enterprise Manager allows administrators to analyze traffic flow and create custom application IPS signatures.
Answer: B
NEW QUESTION 85
A failover event is recorded in the following log messages:
Jan 01 00:56:56 BIG-IP notice mcpd[5318]: 01070727:5: Pool /Common/my-pool member /Common/10.0.0.10:80 monitor status down.
Jan 01 00:56:56 BIG-IP notice sod[5855]: 010c0045:5: Leaving active, group score 10 peer group score 20.
Jan 01 00:56:56 BIG-IP notice sod[5855]: 010c0052:5: Standby for traffic group /Common/traffic-group-1.
Jan 01 00:56:56 BIG-IP notice sod[5855]: 010c0018:5: Standby
Jan 01 00:57:06 BIG-IP notice logger: /usr/bin/tmipsecd --tmmcount 4 ==> /usr/bin/bigstart stop racoon
What is the cause of the failover?
- A. No traffic is seen on traffic-group-1.
- B. The peer device left the traffic group.
- C. The racoon service stopped responding.
- D. The HA group score changed.
Answer: D
NEW QUESTION 86
-- Exhibit -
-- Exhibit -
Refer to the exhibits.
Users are able to access the application when connecting directly to the web server but are unsuccessful when connecting to the virtual server.
What is the cause of the application access problem?
- A. The virtual server is NOT configured to listen on port 80.
- B. The client has no route to the web server.
- C. The virtual server has SNAT disabled.
- D. The web server is NOT responding on the correct port.
- E. The virtual server has address translation disabled.
Answer: E
NEW QUESTION 87
An LTM device is running BIG-IP v10.2.0 software. The LTM Specialist is tasked with upgrading the LTM device to BIG-IP v11.2.0 HF1. The LTM Specialist starts the upgrade process by selecting the uploaded Hotfix and installing to an unused volume. After 10 minutes,the LTM Specialist checks the status of the upgrade process and notices that the process is stalled at 0%.
What should the LTM Specialist verify?
- A. the LTM device has been restarted into maintenance mode
- B. the LTM device has an available Internet connection via the management interface
- C. the selected volume has sufficient space available
- D. the base software version exists on the LTM device
Answer: D
NEW QUESTION 88
An LTM Specialist configures the following iRule on an LTM device:
when HTTP_REQUEST {
if {[string tolower [HTTP::uri]] contains "/URI1/" } {
pool Pool1
}
elseif {[string tolower [HTTP::uri]] contains "/URI2/" } {
pool Pool2
}
elseif {[string tolower [HTTP::uri]] contains "/URI3/" } {
pool Pool3
}
else { pool Pool4}
}
Given the following request: http://www.example.comURI1/index.html?fu=bar&pass=1234 Which pool will be selected by the iRule?
- A. Pool2
- B. Pool1
- C. Pool4
- D. Pool3
Answer: C
NEW QUESTION 89
-- Exhibit -
-- Exhibit -
Refer to the exhibit.
An LTM Specialist configures a virtual server to perform client-side encryption while allowing the server-side traffic to be unencrypted. Application owners report that images are failing to load through the virtual server; however, images load when going directly to the server.
What is the problem with the images loading through the virtual server?
- A. Image references are for HTTP objects, not HTTPS.
- B. The virtual server does not have "SSL Offloading" enabled.
- C. The virtual server does not have an HTTP profile associated.
- D. Image references are for HTTPS objects, not HTTP.
Answer: A
NEW QUESTION 90
There are three servers in the pool: 172.16.20.1, 172.16.20.2, and 172.16.20.3, with the virtual IP address 10.0.20.88.
A user CANNOT connect to an HTTP application. To understand the problem and find a solution, the LTM Specialist runs two concurrent traces on the LTM device, with the following results:
Trace on client side:
tcpdump: verbose output suppressed, use -v or -vv for full protocol decode
listening on 0.0, link-type EN10MB (Ethernet), capture size 96 bytes
22:22:07.423759 IP 172.16.20.100.53875 > 10.0.20.88.80: S 998346084:998346084(0) win 5840
<mss 1460,sackOK,timestamp 67942058 0,nop,wscale 4>
22:22:07.424056 IP 10.0.20.88.80 > 172.16.20.100.53875: S 4671780:4671780(0) ack
998346085 win 4380 <mss 1460,nop,wscale 0,nop,nop,timestamp 2392362490 67942058,sackOK,eol> 22:22:07.424776 IP 172.16.20.100.53875 > 10.0.20.88.80: . ack 1 win 365 <nop,nop,timestamp
67942058 2392362490>
22:22:07.424790 IP 172.16.20.100.53875 > 10.0.20.88.80: P 1:149(148) ack 1 win 365 <nop,nop,timestamp 67942058 2392362490> 22:22:07.424891 IP 10.0.20.88.80 > 172.16.20.100.53875: . ack 149 win 4528
<nop,nop,timestamp 2392362491 67942058>
22:22:12.024850 IP 10.0.20.88.80 > 172.16.20.100.53875: R 1:1(0) ack 149 win 4528
6 packets captured
6 packets received by filter
0 packets dropped by kernel
Trace on server side:
tcpdump: verbose output suppressed, use -v or -vv for full protocol decode
listening on internal, link-type EN10MB (Ethernet), capture size 96 bytes
22:22:07.424881 IP 172.16.20.100.53875 > 172.16.20.2.80: S 51116678:51116678(0) win 4380 <mss 1460,nop,wscale 0,nop,nop,timestamp 2392362491 0,sackOK,eol>
22:22:08.424893 IP 172.16.20.100.53875 > 172.16.20.2.80: S 51116678:51116678(0) win 4380 <mss 1460,nop,wscale 0,nop,nop,timestamp 2392363491 0,sackOK,eol>
22:22:09.625082 IP 172.16.20.100.53875 > 172.16.20.2.80: S 51116678:51116678(0) win 4380 <mss 1460,nop,wscale 0,nop,nop,timestamp 2392364691 0,sackOK,eol>
22:22:10.825194 IP 172.16.20.100.53875 > 172.16.20.2.80: S 51116678:51116678(0) win 4380 <mss 1460,sackOK,eol>
4 packets captured 4 packets received by filter 0 packets dropped by kernel
What should the LTM Specialist do to solve the problem?
- A. Enable the virtual server.
- B. Configure the virtual server to use SNAT.
- C. Edit the packet filter rules.
- D. Modify the monitor of the pool.
Answer: B
NEW QUESTION 91
An LTM device is running BIG-IP v10.2.0 software. The LTM Specialist is tasked with upgrading the LTM device to BIG-IP v11.2.0 HF1. The LTM Specialist starts the upgrade process by selecting the uploaded Hotfix and installing to an unused volume. After 10 minutes, the LTM Specialist checks the status of the upgrade process and notices that the process is stalled at 0%.
What should the LTM Specialist verify?
- A. the LTM device has been restarted into maintenance mode
- B. the LTM device has an available Internet connection via the management interface
- C. the selected volume has sufficient space available
- D. the base software version exists on the LTM device
Answer: D
NEW QUESTION 92
A failover event is recorded in the log messages:
Jan 01 00:00:50 BIG-IP notice sod[5855]: 01140029:5: HA proc_running tmm fails action is go offline and down links.
Jan 01 00:00:50 BIG-IP notice sod[5855]: 010c0050:5: Sod requests links down.
Jan 01 00:00:50 BIG-IP notice sod[5855]: 010c0054:5: Offline for traffic group /Common/traffic-group-1.
Jan 01 00:00:50 BIG-IP notice sod[5855]: 010c003e:5: Offline
Jan 01 00:00:50 BIG-IP notice logger: /usr/bin/tmipsecd --tmmcount 4 ==> /usr/bin/bigstart stop racoon Jan 01 00:00:50 BIG-IP info lacpd[5502]: 01160016:6: Failover event detected. (Switchboard failsafe disabled while offline) Jan 01 00:00:51 BIG-IP err bcm56xxd[5296]: 012c0010:3: Failover event detected. Marking external interfaces down. bsx.c(3633) Jan 01 00:00:51 BIG-IP info bcm56xxd[5296]: 012c0015:6: Link: 1.1 is DOWN Jan 01 00:00:56 BIG-IP notice mcpd[5318]: 0107143c:5: Connection to CMI peer 10.0.0.3 has been removed Jan 01 00:00:56 BIG-IP notice mcpd[5318]: 0107143a:5: CMI reconnect timer: enabled Jan 01 00:00:56 BIG-IP notice mcpd[5318]: 01071431:5: Attempting to connect to CMI peer 10.0.0.3 port 6699 What is the cause of the failover?
- A. TMM failed, and system fail-safe initiated the failover.
- B. Loss of connection to CMI peer 10.0.0.3 initiated the failover.
- C. TMM failed, and VLAN fail-safe initiated the failover.
- D. A switchboard failure caused system fail-safe to initiate the failover.
Answer: A
NEW QUESTION 93
-- Exhibit -
-- Exhibit --
Refer to the exhibit.
An LTM Specialist is investigating reports that users are unable to perform some commands through an FTP virtual server. The users are receiving the FTP error "500 Illegal PORT command." The virtual server is configured to SNAT using automap. The LTM Specialist performs a capture on the server side of the LTM device.
Why is the server returning this error?
- A. PORT command disallowed
- B. Active IP address in LOGIN command
- C. LIST command disallowed
- D. Active IP address in PORT command
Answer: D
NEW QUESTION 94
An LTM Specialist must perform a packet capture on a virtual server with an applied standard FastL4 profile. The virtual server 10.0.0.1:443 resides on vlan301.
Which steps should the LTM Specialist take to capture the data payload successfully while ensuring no other virtual servers are affected?
- A. The LTM device is under light load. The traffic should be mirrored to a dedicated sniffing device. On the sniffing device, the packet capture tcpdump -ni vlan301 should be executed.
- B. The packet capture tcpdump -ni vlan301 should be executed on the command line interface. There is no need to change profiles or PVA acceleration.
- C. A new FastL4 profile should be created and applied to the virtual server with PVA acceleration disabled. Then the packet capture tcpdump -ni vlan301 should be executed on the command line interface.
- D. The standard FastL4 profile should have PVA acceleration disabled. Then the packet capture tcpdump -ni vlan301 should be executed on the command line interface.
Answer: C
NEW QUESTION 95
An LTM Specialist is troubleshooting a problem on an eCommerce website. The user browses the online store using port 80, adding items to the shopping cart. The user then clicks the "Checkout" button on the site, which redirects the user to port 443 for the checkout process. Suddenly, the user's shopping cart is shown as empty. The shopping cart data is stored in memory on the server, and the default source address persistence profile is used on both virtual servers.
What is the issue?
- A. The port 80 and port 443 connections are balanced to different nodes.
- B. The port 443 pool member is deleting the user's session cookie.
- C. The port 80 and port 443 connections are balanced to the same node.
- D. The port 80 pool member is deleting the user's session cookie.
Answer: A
NEW QUESTION 96
......
F5 301b Exam topics
Candidates must know the exam topics before they start of preparation. Because it will really help them in hitting the core. Our F5 301b dumps will include the following topics:
- Maintain Application and LTM Device Health
- Troubleshoot Basic Hardware Issues
- Troubleshoot Basic Performance Issues
Pass Guaranteed Quiz 2021 Realistic Verified Free F5: https://www.examtorrent.com/301b-valid-vce-dumps.html
Free F5 Networks Certification Study Materials 301b Ultimate Study Guide: https://drive.google.com/open?id=1RcHaT7eVXyOy3RnVTH5-L7rcBfww_LHY
