Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
F5 logo

F5Certified Technology Specialist, BIG-IP ASM (F5-CTS, BIG-IP ASM)

Domain 2Objective 1

Objective 2.01 Determine the Appropriate Criteria for Initial Policy Definition Based on Application Requirements (e.g., Wildcards, Violations, Entities, Signatures, User-Defined Signatures) 303 Practice Questions (Page 1)

Part of the Section 2: Create and customize policies domain, which makes up ~27% of our current practice bank.

14questions here
3free pages
6concepts

Questions 1–5

  1. 1application · medium

    A company is deploying ASM for a web application that uses a session cookie named 'JSESSIONID' and a tracking cookie named 'analytics'. The application also accepts file uploads of images (PNG, JPG). The security team wants to ensure that ASM inspects these elements. Which entity configuration is most appropriate for the initial policy?

    Select an answer first
  2. 2foundation · easy

    When should a user-defined signature be created?

    Select an answer first
  3. 3foundation · easy

    Which application characteristic is a primary consideration when defining the initial ASM policy?

    Select an answer first
  4. 4foundation · easy

    What is the primary factor in determining which attack signatures to enable in an ASM policy?

    Select an answer first
  5. 5foundation · easy

    Which action is appropriate when the application uses a technology that is not covered by the default signature set?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by F5. “303” is a trademark of its owner, used for identification only.