Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
F5 logo

F5Certified Solution Expert, Security

Domain 3Objective 7

3.07 Verify a Configuration Is Functioning as Intended to Mitigate a Vulnerability 401 Practice Questions (Page 4)

Part of the OPERATION AND IMPLEMENTATION domain, which makes up ~38% of our current practice bank. F5 does not publish an official question count, but from its 105-minute exam (~40–70 total, ~15–27 in this domain), expect 2–4 from this objective — we provide 25 practice questions to prepare you well beyond it. (estimate)

25questions here
5free pages
6concepts

Questions 16–20

  1. 16application · medium

    A company deployed a new WAF policy to mitigate a recently disclosed vulnerability in a web application. The security team needs to confirm the mitigation is effective. They have access to the BIG-IP logs, ASM logs, and the vendor's CVE advisory. Which combination of actions provides the strongest evidence that the vulnerability is mitigated?

    Select an answer first
  2. 17application · medium

    A government agency requires that all web traffic be inspected by a WAF. The security team configured an ASM policy and needs to verify it is functioning as intended to meet this policy. Which verification method provides the most comprehensive evidence?

    Select an answer first
  3. 18foundation · easy

    Which tool or method is commonly used to check a BIG-IP configuration against a security baseline?

    Select an answer first
  4. 19expert · hard

    An administrator configured an iRule to block requests with a specific User-Agent header. The iRule is attached to the virtual server. The administrator sends a test request with the blocked User-Agent and the connection is reset. However, the administrator is concerned the iRule may not be the cause of the reset. Which additional verification provides the strongest evidence that the iRule is responsible?

    Select an answer first
  5. 20application · medium

    A security engineer configured an iRule on a virtual server to block HTTP requests containing a specific SQL injection pattern. After deploying, the engineer sends a test request with the pattern and observes the connection is reset. The engineer then sends a benign request and it passes through normally. Which additional step best confirms the mitigation is functioning as intended without disrupting production traffic?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by F5. “401” is a trademark of its owner, used for identification only.