Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
F5 logo

F5Certified Technology Specialist, BIG-IP APM

Domain 1Objective 2

Objective 1.02 Identify Which APM Tool(s) Should Be Used to Mitigate a Specific Authentication Attack 304 Practice Questions (Page 2)

Part of the Section 1: Assess security needs and requirements to create an APM policy domain, which makes up ~17% of our current practice bank. F5 does not publish an official question count, but from its 90-minute exam (~35–60 total, ~6–10 in this domain), expect 1–1 from this objective — we provide 19 practice questions to prepare you well beyond it. (estimate)

19questions here
4free pages
4concepts

Questions 6–10

  1. 6foundation · easy

    Which authentication attack vector is characterized by an attacker using a large list of username/password pairs obtained from previous data breaches to attempt logins across many different applications?

    Select an answer first
  2. 7application · medium

    A security analyst is reviewing the BIG-IP APM configuration for a web application. The analyst notices that the access policy uses a cookie to track the user's session state. The application is accessed over HTTPS, but the analyst is concerned about the cookie being intercepted. Which APM setting should be enabled to protect the session cookie from being transmitted over unencrypted connections?

    Select an answer first
  3. 8application · medium

    A company is using BIG-IP APM to secure access to a sensitive application. The security team has mandated that all users must authenticate using a method that is resistant to replay attacks. Which authentication method should be configured?

    Select an answer first
  4. 9foundation · easy

    Which authentication method is considered the most secure among the following, because it requires something the user has in addition to something the user knows?

    Select an answer first
  5. 10foundation · easy

    An attacker intercepts a user's session token after authentication and uses it to impersonate the user. Which authentication attack vector does this describe?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by F5. “304” is a trademark of its owner, used for identification only.