Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
F5 logo

F5Certified Administrator, BIG-IP

Domain 1Objective 4

Configure DDOS Vectors F5CAB1 Practice Questions (Page 1)

Part of the Securing BIG-IP domain, which makes up ~29% of our current practice bank. F5 does not publish an official question count, but from its 30-minute exam (~10–20 total, ~3–6 in this domain), expect 1–1 from this objective — we provide 25 practice questions to prepare you well beyond it. (estimate)

25questions here
5free pages
5concepts

Questions 1–5

  1. 1application · medium

    A social media company runs a public API on BIG-IP. Attackers are sending a high volume of HTTP requests to a specific endpoint, overwhelming the backend application servers. The administrator needs to configure a DDoS protection profile to mitigate this attack. Which DDoS vector should be enabled and tuned?

    Select an answer first
  2. 2application · medium

    An online payment company has a BIG-IP system protecting its transaction API. The security team wants to configure a DDoS protection profile that includes vectors for TCP SYN Flood, UDP Flood, and HTTP Flood. After creating the profile, what must the administrator do to ensure the vectors are active?

    Select an answer first
  3. 3application · medium

    A government agency runs a public records search service on BIG-IP. Attackers are sending a high volume of fragmented IP packets to the service, causing the BIG-IP system to spend excessive CPU resources reassembling them and dropping legitimate traffic. The administrator needs to configure a DDoS protection profile to mitigate this attack. Which DDoS vector should be enabled?

    Select an answer first
  4. 4foundation · easy

    A network administrator observes a flood of TCP SYN packets sent to a server, each with a spoofed source IP address, causing the server's connection queue to fill. Which type of DDoS attack is this?

    Select an answer first
  5. 5expert · hard

    A university runs a public research data portal on BIG-IP. The security team enabled the HTTP Flood vector with a low threshold to protect against application-layer attacks. During a legitimate research campaign, many users simultaneously download large datasets, causing the HTTP Flood vector to trigger and block legitimate traffic. The team must maintain protection against real HTTP floods while allowing the legitimate campaign traffic. What should the administrator do?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by F5. “F5CAB1” is a trademark of its owner, used for identification only.