
F5Certified Administrator, BIG-IP
Domain 1Objective 2
Port Lockdown F5CAB1 Practice Questions (Page 1)
Part of the Securing BIG-IP domain, which makes up ~29% of our current practice bank. F5 does not publish an official question count, but from its 30-minute exam (~10–20 total, ~3–6 in this domain), expect 1–1 from this objective — we provide 15 practice questions to prepare you well beyond it. (estimate)
15questions here
3free pages
5concepts
Questions 1–5
- 1
Which type of traffic is directly affected by port lockdown settings on a BIG-IP?
Select an answer first - 2
Which port lockdown mode allows all TCP and UDP traffic to a self-IP?
Select an answer first - 3
What is the default port lockdown mode for a new self-IP on a BIG-IP system?
Select an answer first - 4
An administrator is configuring port lockdown on a self-IP using the CLI. The administrator wants to allow HTTPS and a custom service on TCP port 9443, but block all other traffic. The administrator has entered the following commands: 'tmsh modify net self self-ip port-lockdown allow-none' and 'tmsh modify net self self-ip port-lockdown add { 443 { protocol tcp } }'. What is missing from this configuration?
Select an answer first - 5
What is the primary purpose of port lockdown on a BIG-IP system?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by F5. “F5CAB1” is a trademark of its owner, used for identification only.