Pre-Summer Sale Special - Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: xmaspas7

Easiest Solution 2 Pass Your Certification Exams

F5CAB1 F5 BIG-IP Administration Install, Initial Configuration, and Upgrade Free Practice Exam Questions (2026 Updated)

Prepare effectively for your F5 F5CAB1 BIG-IP Administration Install, Initial Configuration, and Upgrade certification with our extensive collection of free, high-quality practice questions. Each question is designed to mirror the actual exam format and objectives, complete with comprehensive answers and detailed explanations. Our materials are regularly updated for 2026, ensuring you have the most current resources to build confidence and succeed on your first attempt.

Page: 1 / 1
Total 49 questions

What are the two options for securing a BIG-IP’s management interface?

(Choose two.)

A.

Limiting network access through the management interface to a trusted/secured network VLAN.

B.

Block all management-interface administrative HTTPS and SSH service ports to prevent access.

C.

Use the BIG-IP’s Self-IP addresses for administrative access rather than the management interface.

D.

Restrict administrative HTTPS and SSH access to specific IP addresses or IP ranges.

How should a BIG-IP Administrator check the provisioned CPU percent for a module?

(Choose two.)

A.

By running the top command and reviewing the output for the provisioned module.

B.

By running tmsh show /sys cpu and reviewing the specific module provisioned output.

C.

By going to System » Resource Provisioning and hovering over the CPU section colors.

D.

By running tmsh show /sys provision and reviewing the specific module in the output.

E.

By checking the Dashboard output in the Statistics tab in the GUI.

How can the BIG-IP Administrator tell when an unlicensed module has been provisioned?

A.

A BIG-IP does not allow unlicensed modules to be provisioned.

B.

When provisioning an unlicensed module, a warning will appear.

C.

A Provisioning Warning will be displayed in the GUI in the upper left corner.

A BIG-IP Administrator is using Secure Copy Protocol (SCP) to transfer a TMOS image to the BIG-IP system in preparation for an upgrade.

To what directory should the file be transferred?

A.

/shared/images/

B.

/local/images/

C.

/var/images/

The Configuration Utility of a BIG-IP device is currently accessible via its management IP 10.53.1.245 from all VLANs.

The BIG-IP Administrator needs to restrict access so only hosts from the 10.0.0.0/24 subnet can access the Configuration Utility.

Which TMSH command accomplishes this?

A.

(tmos)# create /net acl MGMT.HTTP rule add { (permit tcp 10.0.0.0 0.0.0.255 host 10.53.1.245 http) }

B.

(tmos)# modify /ltm httpd allow replace-all-with {10.0.0.0/24}

C.

(tmos)# create /net acl MGMT.HTTP rule add { (permit tcp 10.0.0.0/24 10.53.1.245 http) (deny ip any any http) }

D.

(tmos)# modify /sys httpd allow replace-all-with {10.0.0.0/24}

An administrator is in the process of reactivating the license using the interface displayed in the exhibit.

What is the address of the license server to which the BIG-IP device must be able to establish an outbound connection in order to use the Automatic Activation Method ?

A.

license.f5.com

B.

callhome.f5.com

C.

ask.f5.com

D.

activate.f5.com

Which command will display the current active volume on a BIG-IP system?

A.

tmsh show sys version

B.

tmsh show sys software status

C.

tmsh list sys software update

A BIG-IP Administrator upgrades the BIG-IP LTM to a newer software version. After the administrator reboots into the new volume, the configuration fails to load.

Why is the configuration failing to load?

A.

The upgrade was performed on the standby unit.

B.

The license needed to be reactivated before the upgrade.

C.

A minimum of at least two reboots is required.

D.

Connectivity to the DNS server failed to be established.

When logged into the bash shell of a BIG-IP system, which of the following commands will display the management-ip address ?

(Choose two.)

A.

tmsh list /sys management-ip

B.

show mgmt ip

C.

ifconfig mgmt

D.

list / sys management-ip

The BIG-IP Administrator uses Secure Copy Protocol (SCP) to upload a TMOS image to the /shared/images/ directory in preparation for an upgrade.

After the upload is complete, what will the system do before the image appears in the GUI under:

System » Software Management » Image List ?

A.

The system performs a reboot into the new partition

B.

The system verifies the internal checksum

C.

The system copies the image to /var/local/images/

The BIG-IP Administrator received a ticket that an authorized user is attempting to connect to the Configuration Utility from a jump host and is being denied.

The HTTPD allow list is configured as:

sys httpd {

allow { 172.28.31.0/255.255.255.0 172.28.65.0/255.255.255.0 }

}

The jump host IP is 172.28.32.22 .

What command should the BIG-IP Administrator use to allow HTTPD access for this jump host?

A.

modify /sys httpd allow replace-all-with { 172.28.32.22 }

B.

modify /sys httpd allow delete { 172.28.31.0/255.255.255.0 172.28.65.0/255.255.255.0 }

C.

modify /sys httpd allow add { 172.28.32.22 }

How should the BIG-IP Administrator block connections to a Self IP on port 443 while allowing connections to other ports?

A.

In the Configuration Utility, select System » Platform » SSH Allow. Enter the IP addresses of the clients allowed to connect to the Self IPs.

B.

In the Configuration Utility, select Network » Self IPs. Select the Self IP in question, then select ' Disable ' .

C.

In the Configuration Utility, go to Network » Self IPs. Select the Self IP in question, then select ' Port Lockdown ' and ' Allow Custom ' . Enter in only the allowed ports to that Self IP address.

D.

In the Configuration Utility, go to Network » Self IPs. Select the Self IP in question, then select ' Port Lockdown ' and ' Allow None ' .

In order to configure allowed IP addresses for SSH access to a BIG-IP device, the BIG-IP Administrator has issued the commands shown in the exhibit.

Which IP addresses will have SSH access after issuing the shown commands?

(Choose two.)

A.

10.0.0.100

B.

10.0.0.254

C.

10.0.0.256

D.

100.0.1.10

E.

100.0.0.10

Which of the following are resource allocation (provisioning) settings for BIG-IP modules?

(Choose two.)

A.

Maximum

B.

Nominal

C.

Dedicated

D.

Limited

Page: 1 / 1
Total 49 questions
Copyright © 2014-2026 Solution2Pass. All Rights Reserved