
F5Certified Technology Specialist, BIG-IP ASM (F5-CTS, BIG-IP ASM)
Domain 4Objective 8
Objective 4.08 Evaluate Whether a Security Policy Is Performing per the Requirements (i.e., Blocking, Transparent, or Other Relevant Security Features) 303 Practice Questions (Page 2)
Part of the Section 4: Administer and evaluate ASM implementation domain, which makes up ~42% of our current practice bank.
18questions here
4free pages
3concepts
Questions 6–10
- 6
An ASM administrator is preparing a monthly report for the CISO. The report should highlight the most significant security trends. The administrator notices a sharp increase in 'HTTP Protocol Compliance' violations from a specific internal IP address. What is the most appropriate way to communicate this finding?
Select an answer first - 7
A company's ASM policy is in blocking mode. The administrator is evaluating the policy's performance and notices that a legitimate business application is being blocked because it sends requests that match the 'Command Injection' attack signature. The application team says the request format is required and cannot be changed. The administrator must balance security and availability. What is the most appropriate action?
Select an answer first - 8
A PCI compliance report indicates that the ASM policy is not blocking 'Remote File Inclusion' (RFI) attacks. The administrator checks the policy and finds that the 'RFI' attack signature is not enabled. What should the administrator do to resolve this compliance issue?
Select an answer first - 9
A company's ASM policy is in blocking mode. The administrator is evaluating the policy's performance and notices that a high volume of 'HTTP Protocol Compliance' violations are being blocked. The violations are from a legitimate API client that is sending requests with a non-standard HTTP method. The API team says the method is required for their application. The administrator must balance security and availability. What is the most appropriate action?
Select an answer first - 10
A PCI compliance report shows that the ASM policy is not blocking 'Cross-Site Request Forgery' (CSRF) attacks. The administrator finds that the 'CSRF' attack signature is not enabled. What should the administrator do to resolve this compliance issue?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by F5. “303” is a trademark of its owner, used for identification only.