
F5Certified Technology Specialist, BIG-IP DNS
Domain 2Objective 12
Objective 2.12 Explain the Use of Device Certificates in iQuery [SSL Components, Expiration, 3rd Party Certs] 302 Practice Questions (Page 3)
Part of the Section 2: Deployment domain, which makes up ~30% of our current practice bank.
19questions here
4free pages
5concepts
Questions 11–15
- 11
A company has two BIG-IP DNS devices in a sync-failover group. The iQuery connection between them has been working for months, but after a recent certificate renewal on one device, the other device logs iQuery handshake failures. The certificates were renewed using the same key pair and same subject as before. What is the most likely cause of the failure?
Select an answer first - 12
An administrator is troubleshooting an iQuery connection failure between two BIG-IP DNS devices. The devices are in the same sync group and the network connectivity is fine. The administrator checks the device certificates and finds that the certificate on one device is self-signed, while the other device has a certificate signed by an internal CA. What is the most likely issue?
Select an answer first - 13
In a BIG-IP DNS sync group, what is the primary purpose of device certificates in iQuery communication?
Select an answer first - 14
What is the recommended process for renewing a device certificate on a BIG-IP DNS device?
Select an answer first - 15
A large enterprise has multiple BIG-IP DNS devices across different data centers. They use iQuery for sync. The security team mandates that all certificates be rotated every 90 days. The operations team is concerned about the operational burden and potential for outages. Which approach best balances security requirements and operational reliability?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by F5. “302” is a trademark of its owner, used for identification only.