Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
F5 logo

F5Certified Technology Specialist, BIG-IP ASM (F5-CTS, BIG-IP ASM)

Domain 4Objective 8

Objective 4.08 Evaluate Whether a Security Policy Is Performing per the Requirements (i.e., Blocking, Transparent, or Other Relevant Security Features) 303 Practice Questions (Page 4)

Part of the Section 4: Administer and evaluate ASM implementation domain, which makes up ~42% of our current practice bank.

18questions here
4free pages
3concepts

Questions 16–18

  1. 16expert · hard

    A company's ASM policy is in blocking mode. The security team wants to ensure that a new application is protected, but the application team is concerned that the policy might block legitimate user requests. The administrator needs to evaluate the policy's performance in a way that balances security and availability. What is the most appropriate approach?

    Select an answer first
  2. 17application · medium

    A PCI compliance report shows that the ASM policy is not blocking 'Local File Inclusion' (LFI) attacks. The administrator finds that the 'LFI' attack signature is in the 'staging' signature set. What is the most appropriate action to take?

    Select an answer first
  3. 18application · medium

    A PCI compliance report indicates that the ASM policy is not blocking 'SQL Injection' (SQLi) attacks. The administrator checks the policy and finds that the 'SQL Injection' attack signature is not enabled. What should the administrator do to resolve this compliance issue?

    Select an answer first
Finished these 3 questions?

Review the revealed explanations, or continue through the curriculum.

No more pagesBack to 303

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by F5. “303” is a trademark of its owner, used for identification only.