Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
F5 logo

F5Certified Technology Specialist, BIG-IP ASM (F5-CTS, BIG-IP ASM)

Domain 4Objective 5

Objective 4.05 Identify and Gather Information Relevant to Evaluating the Activity of an ASM Implementation 303 Practice Questions (Page 1)

Part of the Section 4: Administer and evaluate ASM implementation domain, which makes up ~42% of our current practice bank.

27questions here
6free pages
6concepts

Questions 1–5

  1. 1application · medium

    A security analyst is reviewing the ASM dashboard after a two-week deployment. The dashboard shows a steady increase in 'Requests' but a flat line for 'Violations' despite a known spike in automated scanning activity from a specific IP range. The analyst wants to confirm whether the scanner is actually being blocked or if the policy is simply not detecting it. Which metric should the analyst examine first to determine the effectiveness of the policy against this specific traffic?

    Select an answer first
  2. 2foundation · easy

    Which system performance metric is most directly related to the ASM's ability to process requests without delay?

    Select an answer first
  3. 3expert · hard

    A manager requests a report showing the 'Top 10 Attack Signatures' for the last quarter. The admin generates the report and sees that the top signature is 'SQL Injection'. However, the manager also wants to know the business impact, specifically which applications were targeted. The admin needs to provide this additional context. Which report or data source should the admin use to correlate the attack signatures with the affected applications?

    Select an answer first
  4. 4application · medium

    Users are reporting that the web application is responding slowly. The ASM is deployed inline. The admin checks the ASM system performance metrics and sees high CPU usage and a large number of 'Requests in Queue'. What is the most likely conclusion from these metrics?

    Select an answer first
  5. 5expert · hard

    A security team is evaluating the effectiveness of their ASM after a major marketing campaign drove a large increase in legitimate traffic. They observe that the total number of 'Violations' has increased by 50%, but the 'Blocked Requests' have only increased by 5%. The team is concerned that the policy is not blocking enough. What is the most important additional metric to analyze before concluding the policy is ineffective?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by F5. “303” is a trademark of its owner, used for identification only.