
F5Certified Technology Specialist, BIG-IP ASM (F5-CTS, BIG-IP ASM)
Domain 2Objective 3
Objective 2.03 Review and Evaluate Rules Based on Information Gathered from ASM (e.g., Attack Signatures, DataGuard, Parameters, Entities) 303 Practice Questions (Page 3)
Part of the Section 2: Create and customize policies domain, which makes up ~27% of our current practice bank.
17questions here
4free pages
5concepts
Questions 11–15
- 11
An analyst is reviewing entity data and finds that a specific header 'X-Forwarded-For' is being sent with a value that is not a valid IP address. The requests are coming from a load balancer that should set this header. What should the analyst do?
Select an answer first - 12
An ASM log shows a DataGuard event for a social security number pattern. What is the most appropriate action for the administrator to take based on this finding?
Select an answer first - 13
While reviewing ASM logs, an administrator finds DataGuard events indicating that a credit card number was sent in a request. What is the primary purpose of reviewing this DataGuard finding?
Select an answer first - 14
An ASM log shows a high number of requests with an unusual cookie value. What should the administrator do when reviewing this entity data?
Select an answer first - 15
An administrator is reviewing ASM logs and notices that a specific URL is receiving requests that match an attack signature, contain a suspicious parameter, and include a DataGuard event. What is the primary purpose of correlating this information?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by F5. “303” is a trademark of its owner, used for identification only.