Tmos Administration Free Sample Questions

Covers troubleshooting virtual server connectivity, hardware, and performance issues, device management connectivity, opening support tickets, and managing virtual servers and pools.

20 free sample questions255 in the full practice test

Try simulator

201 Sample Questions

  1. Question 1

    An F5 administrator is configuring a new virtual server for a critical application and needs to ensure that if the primary persistence method fails, a backup method is used. The primary requirement is Source Address persistence, with a fallback to SSL session ID persistence if no source address match is found. How should this be configured on the virtual server?

    Answer and explanation

    Correct answer: C

    The BIG-IP system is designed to handle this scenario explicitly. The 'Default Persistence Profile' is always checked first. If no persistence record is found using the default profile, the system then checks the 'Fallback Persistence Profile'. This allows for a layered approach to session persistence without requiring iRules or custom profiles for this common use case.

  2. Question 2

    A BIG-IP device in a high-availability (HA) pair is rebooted into the End User Diagnostics (EUD) utility to check for potential hardware faults. After the tests complete, the administrator needs to save the results for analysis and for a potential F5 support case. What is the correct procedure to obtain the EUD output?

    Answer and explanation

    Correct answer: B

    The standard F5 procedure for collecting EUD results involves using a USB flash drive. The EUD utility has a built-in function to detect the drive and save the diagnostic log file, which can then be easily transferred to another machine for review or uploaded to F5 Support.

  3. Question 3

    A web application is experiencing intermittent slowness. The administrator suspects the issue is related to how the BIG-IP is handling HTTP content, possibly with compression or caching. Standard dashboard statistics do not provide enough detail. To investigate further, the administrator decides to use tcpdump. Which tcpdump flag is essential for viewing the unencrypted HTTP payload on a virtual server that has a Client SSL profile applied?

    Answer and explanation

    Correct answer: C

    The :p modifier used with the -i 0.0 interface tells tcpdump to capture traffic on the client-side of the flow after it has been decrypted by the Client SSL profile. This allows the administrator to see the raw, unencrypted application layer data (e.g., HTTP headers and payload) as it is processed by TMM, which is crucial for troubleshooting application-level performance issues.

  4. Question 4

    An administrator cannot access the BIG-IP Configuration Utility (GUI) via a self-IP address that is normally used for management. SSH access to the same self-IP is working correctly. The administrator suspects a Port Lockdown setting is the cause. Where in the Configuration Utility would the administrator verify and modify the Port Lockdown settings for the self-IP?

    Answer and explanation

    Correct answer: B

    Port Lockdown is a security feature configured on a per-self-IP basis. To check or change this setting, the administrator must navigate to Network > Self IPs, select the specific self-IP in question, and then review the 'Port Lockdown' setting. SSH is likely allowed while HTTPS is not.

  5. Question 5

    When preparing to open a support case with F5 for a complex application delivery issue, what is the single most important diagnostic file that should be generated and uploaded to iHealth before contacting support?

    Answer and explanation

    Correct answer: C

    A qkview file is a comprehensive snapshot of the BIG-IP system's configuration, logs, and real-time status. F5 Support engineers rely on this file as the primary source of information for troubleshooting. Uploading it to iHealth provides an initial automated analysis and makes the data readily available to the support team, significantly speeding up the diagnostic process.

  6. Question 6

    An administrator is viewing the Network Map in the BIG-IP Configuration Utility and notices that a pool member is displayed as a blue square. What does this status icon indicate?

    Answer and explanation

    Correct answer: D

    In the BIG-IP Network Map, different shapes and colors represent the status of objects. A blue square specifically indicates that the object (in this case, a pool member) is available but its health status is unknown because there is no health monitor assigned to it. The system cannot verify its ability to service requests.

  7. Question 7

    An administrator needs to perform a software upgrade on a high-availability (HA) pair of BIG-IP devices with minimal downtime. Which of the following represents the correct, F5-recommended strategy for this operation?

    Answer and explanation

    Correct answer: C

    The standard, best-practice procedure for upgrading an HA pair is to perform the operation on the standby unit first. This allows the active unit to continue handling traffic. Once the standby unit is successfully upgraded and rebooted into the new software version, the administrator can force a failover. The newly upgraded unit becomes active, and the process is repeated on the other unit, which is now the standby. This ensures traffic is always being handled by one of the units.

  8. Question 8

    During a maintenance window, an administrator needs to gracefully remove a pool member from service to perform updates on the backend server. The goal is to prevent any new connections from being sent to this member, while allowing existing, persisted connections to complete. Which action should the administrator take on the pool member?

    Answer and explanation

    Correct answer: B

    Setting a pool member's state to 'Disabled' is the correct action for graceful removal. This state allows existing connections, including those maintained by persistence, to continue until they are closed or time out. However, it prevents the BIG-IP from sending any new connections to that member. 'Forced Offline', in contrast, marks the member as down and immediately stops it from receiving any traffic, which could disrupt existing user sessions.

  9. Question 9

    A virtual server is configured with a pool that uses the 'Least Connections (member)' load balancing method. An administrator observes that one pool member, despite being healthy and having a high connection limit, is receiving significantly less traffic than the others. Which of the following is the most likely reason for this behavior?

    Answer and explanation

    Correct answer: B

    The BIG-IP system checks for a persistence record before making a load balancing decision. If a client has an existing persistence record for a specific pool member, the system will send the new connection to that member, regardless of the 'Least Connections' algorithm. If most returning clients are persisted to other members, a new or underutilized member will receive very little traffic.

  10. Question 10

    An administrator is creating a new user account that should only be allowed to view statistics and object statuses, but not make any configuration changes. Which user role should be assigned to this account?

    Answer and explanation

    Correct answer: C

    The 'Guest' role in TMOS is specifically designed for read-only access. Users with this role can log in to the Configuration Utility and view configurations, statistics, and statuses, but they are prohibited from making any changes. This is the principle of least privilege in action for monitoring purposes.