Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
F5 logo

F5 Certified Administrator NGINX - Configuration:Demonstrate

Domain 5Objective 3

Enable/Disable Ciphers and TLS Version F5N3 Practice Questions (Page 3)

Part of the Demonstrate how to enable HTTPS and associated security settings domain, which makes up ~21% of our current practice bank. F5 does not publish an official question count, but from its 30-minute exam (~10–20 total, ~2–4 in this domain), expect 1–1 from this objective — we provide 13 practice questions to prepare you well beyond it. (estimate)

13questions here
3free pages
4concepts

Questions 11–13

  1. 11expert · hard

    An NGINX server is configured with ssl_protocols TLSv1.2 TLSv1.3; and ssl_ciphers ECDHE-RSA-AES256-GCM-SHA384:ECDHE-RSA-AES128-GCM-SHA256;. A client connects using TLS 1.2 and offers both ECDHE-RSA-AES256-GCM-SHA384 and ECDHE-RSA-AES128-GCM-SHA256. The server has ssl_prefer_server_ciphers on;. Which cipher will be selected?

    Select an answer first
  2. 12expert · hard

    A company must support a legacy application that only works with TLS 1.0 and the RC4-SHA cipher. The security team requires that all other traffic use TLS 1.2 or higher with strong ciphers. What is the most appropriate configuration approach?

    Select an answer first
  3. 13expert · hard

    An NGINX server is configured with ssl_protocols TLSv1.2 TLSv1.3;. A client connects offering only TLS 1.1. What happens during the handshake?

    Select an answer first
Finished these 3 questions?

Review the revealed explanations, or continue through the curriculum.

No more pagesBack to F5N3

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by F5. “F5N3” is a trademark of its owner, used for identification only.