
F5Certified Technology Specialist, BIG-IP DNS
Domain 1Objective 7
Objective 1.07 Identify DNS Security Concepts and Their Purpose [DDOS, DNSSEC, AnyCast, DNSFirewall, Site Validation, iRules, and Impacts of Floating self-IP Versus Non-Floating self-IP Listener] 302 Practice Questions (Page 5)
Part of the Section 1: Concepts domain, which makes up ~46% of our current practice bank.
25questions here
5free pages
7concepts
Questions 21–25
- 21
In DNS failover, what role does site validation play?
Select an answer first - 22
How does AnyCast improve DNS availability?
Select an answer first - 23
What is the primary purpose of a DNS firewall?
Select an answer first - 24
A large enterprise runs authoritative DNS from two data centers. They are experiencing a volumetric DDoS attack that is saturating the network link at one data center. They have AnyCast configured for the DNS service, and the DNS listeners use floating self-IPs. However, the attack is still causing service degradation. What is the most likely reason the AnyCast deployment is not fully mitigating the attack?
Select an answer first - 25
A company runs a web application in two data centers. They use BIG-IP DNS to load balance traffic between the two sites. They want to ensure that if one site's web server is returning HTTP 500 errors, BIG-IP DNS stops sending new user traffic to that site and directs all traffic to the healthy site. Which feature should they configure?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
No more pagesBack to 302
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by F5. “302” is a trademark of its owner, used for identification only.