F5 BIG-IP ASM v10.x Sample Questions:
1. When we have a * wildcard entity configured in the File Type section with tightening enabled, the following may occur when requests are passed through the policy. Which is the most accurate statement?
A) File type entities will automatically be added to the policy (policy will tighten).
B) File type violations will be triggered and learning will be available based on these violations.
C) File type violations will not be triggered.
D) File type violations will not be triggered and the entity learning section will be populated with file type recommendations.
2. The BIG-IP ASM System sets two types of cookies to enforce elements in the security policy. The two types are main and frame cookies. What is the purpose of the frame cookie? (Choose 2)
A) Validates domain cookies
B) Detects session expiration
C) Handles dynamic parameter names and flow extractions
D) Stores dynamic parameters and values
3. Which of the following are correct regarding Wildcard entities? (Choose 2)
A) Wildcard entities require the need to learn only from violations.
B) Wildcard entities are the basis for negative security logic.
C) Wildcard entities are the basis for positive security logic.
D) Wildcard entities can be applied to file types, URLs, cookies and parameters.
4. Which of the following is a language used for content provided by a web server to a web client?
A) TCP
B) HTML
C) HTTP
D) FTP
5. Which of the following methods of protection is not available within the Protocol Security Manager for HTTP traffic?
A) File type enforcement
B) Attack signatures
C) Data guard
D) Evasion techniques
Solutions:
Question # 1 Answer: B | Question # 2 Answer: C,D | Question # 3 Answer: C,D | Question # 4 Answer: B | Question # 5 Answer: B |