
F5Certified Technology Specialist, BIG-IP ASM (F5-CTS, BIG-IP ASM)
Domain 2Objective 3
Objective 2.03 Review and Evaluate Rules Based on Information Gathered from ASM (e.g., Attack Signatures, DataGuard, Parameters, Entities) 303 Practice Questions (Page 1)
Part of the Section 2: Create and customize policies domain, which makes up ~27% of our current practice bank.
17questions here
4free pages
5concepts
Questions 1–5
- 1
While reviewing ASM logs, an administrator notices an attack signature match for a known SQL injection pattern. What is the primary purpose of reviewing this attack signature match in the context of policy evaluation?
Select an answer first - 2
An ASM log shows a high number of requests triggering a specific attack signature. What should the administrator do first when evaluating this information?
Select an answer first - 3
A review of ASM entity data shows that a specific URL '/admin/config.php' is receiving a high number of requests with unusual 'User-Agent' headers. The requests are not matching any attack signatures. The URL is not linked from any public page. What should the analyst do first?
Select an answer first - 4
An analyst is reviewing entity data and finds that a specific cookie 'sessionID' is being sent with a value that is always the same for all users. The application team confirms that the cookie should be unique per user. What should the analyst do to address this issue?
Select an answer first - 5
When reviewing ASM data, an administrator combines attack signature matches, DataGuard events, parameter anomalies, and entity access patterns. What is the main benefit of this correlation?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by F5. “303” is a trademark of its owner, used for identification only.