
F5 Certified Technology Specialist, BIG-IP DNS
The F5 Certified Technology Specialist, BIG-IP DNS certification validates your ability to deploy, configure, and manage F5 BIG-IP DNS solutions in application delivery environments. It is designed for network professionals who work with DNS and traffic management. Earning it demonstrates your expertise in ensuring application availability and performance through intelligent DNS-based load balancing.
659 practice questions · Updated 2026-07-30
3Domains
40Objectives
189Concepts
659Questions
302 Curriculum
Every domain, objective, and concept the 302 exam measures.
- Common DNS resource record types
- Specialized resource record types
- DNSSEC record types
- DNSSEC purpose and operation
- GTM implementation of DNSSEC
- Zone types overview
- Master zone
- Slave zone
- Hint zone
- Root zone
- Stub zone
- Purpose of nslookup
- Purpose of dig
- Purpose of named-checkzone
- Purpose of rndc
- Recursive DNS resolution
- Iterative DNS resolution
- Comparison of recursive and iterative queries
- IPv4 vs IPv6 data transport
- IPv6 record vs IPv6 data transport
- IPv4/6 query type vs transport
- Query type and transport combinations
- DNS hierarchical diagram interpretation
- GTM query source determination
- Role of recursive resolvers
- Role of authoritative servers
- Impact of forwarding and caching
- Practical application to diagrams
- DNS DDoS protection
- DNSSEC
- AnyCast
- DNS Firewall
- Site validation
- iRules for DNS
- Floating vs non-floating self-IP listeners
- Prober pool purpose
- Prober pool composition
- Prober pool operation
- Object monitoring types
- Monitor types
- Object statuses
- Status propagation
- Static load balancing methods
- Dynamic load balancing methods
- Selection criteria for load balancing methods
- WideIP Purpose and Use
- LTM iRule Events
- GTM iRule Events
- Applying iRules to WideIP vs Listener
- Purpose of GTM tools
- checkcert tool
- iqdump tool
- Other GTM tools
- When to use GTM tools
- Zone transfer overview
- Master/slave architecture
- Multi-master configuration
- DNSExpress
- Full zone transfers (AXFR)
- Incremental zone transfers (IXFR)
- Zone update notifications (NOTIFY)
- Zone expiration and refresh
- DNS profile features overview
- DNS cache feature
- Unhandled query behavior
- DNS Express feature
- Enable GTM feature
- Enable BIND feature
- Query response determination
- Response source identification
- Query source IP address determination
- Wide IP load balancing methods
- Pool load balancing methods
- Topology records and regions
- Interaction of load balancing and topology
- Scenario-based response prediction
- iQuery in sync groups
- iQuery in LTM monitoring
- Sync group configuration
- Sync group basic requirements
- GTM data center object networking requirements
- GTM object identification
- Purpose of translation addresses
- When to configure translation addresses
- Translation address configuration steps
- GTM sync group purpose and function
- GTM sync group configuration steps
- iQuery protocol overview
- iQuery configuration and security
- Troubleshooting sync group and iQuery issues
- Virtual server status and load balancing decision
- Single pool versus multiple pools configuration
- Secondary and fallback mechanisms in the first pool
- Topology and topology records at Wide IP level versus pool level
- iRule effects on load balancing
- Screening mode deployment
- DNS delegation deployment
- Caching resolver deployment
- DNS 6 to 4 deployment
- ZoneRunner usage for DNS records
- Non-wide IP record types
- GTM configuration for non-wide IP records
- Integration with wide IPs
- Single pool versus multiple pools
- Effect of secondary and fall-back mechanisms in the first pool
- Effect of topology and topology records at the Wide IP level versus pool level
- iRule effects on Wide IP answers
- Topology region definition
- Topology rule configuration
- Load balancing mode interaction
- Topology response prediction
- Adding LTM to sync group
- bigip_add execution host
- Auto-discovery behavior
- Delete versus no-delete mode
- Compatibility with translation
- Route domain handling
- Configuration scenarios
- Minimal object requirements for a sync group
- Adding an LTM to a sync group
- Running bigip_add on the correct host
- Adding GTM to a data center
- Direction of gtm_add execution
- Using the gtm_add utility
- Sync group mesh overview
- Configuration verification
- Troubleshooting sync failures
- Monitoring sync health
- Device certificate role in iQuery
- SSL components in device certificates
- Device certificate expiration impact
- Monitoring and renewal of device certificates
- Third-party certificate usage
- Verify DNSSEC record signing
- Check authoritative bit in DNSSEC responses
- Validate SIG file placement
- Health monitoring methods
- Interpreting health status
- Troubleshooting health issues
- Validating configuration and operation
- Impact of software updates on monitoring
- Impact of software updates on configuration state
- Update scenarios and their effects
- Mitigation strategies for update impacts
- Recursion Enablement
- Protocol Selection
- Unhandled Query Behavior
- BIND Disablement
- Device certificate renewal process
- Updating certificates in the sync group
- Certificate synchronization and propagation
- Troubleshooting certificate renewal issues
- UCS restore process on GTM
- Impact of UCS restore on GTM configuration
- GTM restore after RMA
- Effect on zone files during UCS restore
- big3d_install utility
- Update process for big3d on LTM
- Compatibility considerations
- Conflict with Enterprise Manager (EM) updates
- iQuery mesh overview
- Pre-add device checks
- Adding a device to the iQuery mesh
- Post-add verification
- Pre-remove device checks
- Removing a device from the iQuery mesh
- Post-remove verification
- Troubleshooting common issues
- ZoneRunner zone maintenance overview
- Adding resource records via ZoneRunner
- Modifying resource records via ZoneRunner
- Deleting resource records via ZoneRunner
- Comparison with manual zone editing
- Port Lockdown Effects
- Packet Filter Implications
- iQuery Security and Operation
- SSH Hardening Effects
- Appliance Mode on LTM
- Bridge GTM Mode
- Advanced Shell Access Limitations
- GTM command line tools overview
- TMSH GTM commands
- Show GTM iQuery
- Identify required support information
- Gather system and configuration details
- Document symptoms and impact
- Provide network and environment context
- Collect logs and diagnostics
- Prepare reproduction steps
Ready to practice?Test your knowledge with exam-style questions or take an intelligent quiz tailored to your level.
Percentages reflect share of the current practice bank, not official exam weightings — no structured per-skill weight is published for 302, so none is invented.