
F5Certified Administrator, BIG-IP
Domain 1Objective 4
Configure DDOS Vectors F5CAB1 Practice Questions (Page 5)
Part of the Securing BIG-IP domain, which makes up ~29% of our current practice bank. F5 does not publish an official question count, but from its 30-minute exam (~10–20 total, ~3–6 in this domain), expect 1–1 from this objective — we provide 25 practice questions to prepare you well beyond it. (estimate)
25questions here
5free pages
5concepts
Questions 21–25
- 21
A news website runs on BIG-IP and experiences a legitimate traffic spike during breaking news events. The security team enabled the TCP SYN Flood vector with a default threshold. During a major news event, the high volume of legitimate new connections triggers the SYN Flood vector, blocking readers. The team must maintain SYN flood protection while allowing legitimate traffic spikes. What should the administrator do?
Select an answer first - 22
An administrator notices that legitimate users are being blocked during a traffic spike. What should be adjusted in the DDoS protection profile to reduce false positives while still providing protection?
Select an answer first - 23
A logistics company has a BIG-IP system with multiple virtual servers, including one for a customer tracking portal and one for an internal fleet management system. The security team configured a DDoS protection profile with appropriate vectors for the tracking portal. They now need to ensure the fleet management system is also protected. What is the most efficient way to apply DDoS protection to the fleet management virtual server?
Select an answer first - 24
A media streaming company is experiencing an attack where attackers send a massive volume of DNS queries to the BIG-IP system, overwhelming the DNS service and causing legitimate queries to time out. The administrator needs to configure a DDoS protection profile to mitigate this attack. Which DDoS vector should be enabled and tuned?
Select an answer first - 25
A financial services company hosts a public-facing login portal on BIG-IP. During a recent incident, attackers flooded the portal with a high volume of incomplete TCP connections, exhausting the connection table on the backend servers. The security team wants to configure a DDoS protection profile to mitigate this specific attack vector without impacting legitimate users who complete the TCP handshake normally. Which DDoS vector should the administrator enable and tune in the profile?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
No more pagesBack to F5CAB1
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by F5. “F5CAB1” is a trademark of its owner, used for identification only.