
F5 Certified Administrator NGINX - Configuration:Demonstrate
Domain 5Objective 3
Enable/Disable Ciphers and TLS Version F5N3 Practice Questions (Page 3)
Part of the Demonstrate how to enable HTTPS and associated security settings domain, which makes up ~21% of our current practice bank. F5 does not publish an official question count, but from its 30-minute exam (~10–20 total, ~2–4 in this domain), expect 1–1 from this objective — we provide 13 practice questions to prepare you well beyond it. (estimate)
13questions here
3free pages
4concepts
Questions 11–13
- 11
An NGINX server is configured with ssl_protocols TLSv1.2 TLSv1.3; and ssl_ciphers ECDHE-RSA-AES256-GCM-SHA384:ECDHE-RSA-AES128-GCM-SHA256;. A client connects using TLS 1.2 and offers both ECDHE-RSA-AES256-GCM-SHA384 and ECDHE-RSA-AES128-GCM-SHA256. The server has ssl_prefer_server_ciphers on;. Which cipher will be selected?
Select an answer first - 12
A company must support a legacy application that only works with TLS 1.0 and the RC4-SHA cipher. The security team requires that all other traffic use TLS 1.2 or higher with strong ciphers. What is the most appropriate configuration approach?
Select an answer first - 13
An NGINX server is configured with ssl_protocols TLSv1.2 TLSv1.3;. A client connects offering only TLS 1.1. What happens during the handshake?
Select an answer first
Finished these 3 questions?
Review the revealed explanations, or continue through the curriculum.
No more pagesBack to F5N3
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by F5. “F5N3” is a trademark of its owner, used for identification only.