
F5 Certified Administrator NGINX - Configuration:Demonstrate
Domain 5Objective 3
Enable/Disable Ciphers and TLS Version F5N3 Practice Questions (Page 1)
Part of the Demonstrate how to enable HTTPS and associated security settings domain, which makes up ~21% of our current practice bank. F5 does not publish an official question count, but from its 30-minute exam (~10–20 total, ~2–4 in this domain), expect 1–1 from this objective — we provide 13 practice questions to prepare you well beyond it. (estimate)
13questions here
3free pages
4concepts
Questions 1–5
- 1
Which NGINX directive is used to specify the allowed cipher suites for an HTTPS server?
Select an answer first - 2
In the ssl_ciphers directive, what does the '!' character before a cipher name (e.g., !aNULL) indicate?
Select an answer first - 3
An NGINX administrator needs to configure the server to prefer the most secure cipher suites while still allowing fallback to less secure ones for older clients. The administrator wants to explicitly list the ciphers in order of preference. Which directive and value accomplishes this?
Select an answer first - 4
An NGINX administrator needs to configure a server to support only TLS 1.3, which is the most secure version. Which ssl_protocols value should be used?
Select an answer first - 5
An NGINX administrator is troubleshooting a client that cannot connect. The client supports TLS 1.2 and the cipher ECDHE-RSA-AES128-GCM-SHA256. The server is configured with ssl_protocols TLSv1.2 TLSv1.3; and ssl_ciphers ECDHE-RSA-AES256-GCM-SHA384;. What is the most likely cause of the connection failure?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by F5. “F5N3” is a trademark of its owner, used for identification only.