Pre-Summer Special Sale - 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: best70

Page: 1 / 2
Total 14 questions
Exam Code: F5CAB1                Update: May 26, 2026
Exam Name: BIG-IP Administration Install, Initial Configuration, and Upgrade

F5 BIG-IP Administration Install, Initial Configuration, and Upgrade F5CAB1 Exam Dumps: Updated Questions & Answers (May 2026)

Question # 1

The monitoring team reports that the SNMP server is unable to poll data from a BIG-IP device.

What information will help the BIG-IP Administrator determine whether the issue originates from the BIG-IP system?

A.

The “Port Lockdown” setting is preventing the SNMP server from polling data from the BIG-IP.

B.

The “Traffic Group” setting must use a floating Traffic Group.

C.

The “VLAN / Tunnel” setting must allow All Vlans.

D.

The configuration on the exhibit is correct and other options should be explored.

Question # 2

The BIG-IP Administrator needs to update access to the Configuration Utility to include the 172.28.31.0/24 and 172.28.65.0/24 networks.

From the TMOS Shell (tmsh), which command should the BIG-IP Administrator use to complete this task?

A.

modify /sys httpd allow add { 172.28.31.0/255.255.255.0 172.28.65.0/255.255.255.0 }

B.

modify /sys httpd allow add { 172.28.31.0 172.28.65.0 }

C.

modify /sys httpd permit add { 172.28.31.0/255.255.255.0 172.28.65.0/255.255.255.0 }

Question # 3

A BIG-IP Administrator discovers malicious brute-force attempts to access the BIG-IP device on the management interface via SSH.

The administrator needs to restrict SSH access to the management interface.

Where should this be accomplished?

A.

Network > Interfaces

B.

Network > Self IPs

C.

System > Configuration

D.

System > Platform

Question # 4

A secondary administrator has been granted access to a BIG-IP device through its Management Interface , but is unable to access the Configuration Utility (WebUI) .

What command can be run from the CLI to capture the network traffic on the management interface and troubleshoot the issue?

(Choose two.)

A.

tcpdump -i eth0 -n port 443

B.

tcpdump -i mgmt -n port 443

C.

tcpdump -i 0.0 -n port 443

D.

tcpdump -i tun0 -n port 443

E.

tcpdump -i management -n port 443

Question # 5

An F5 BIG-IP Administrator is asked to report which modules are provisioned on the BIG-IP.

In which two ways can this be done?

(Choose two.)

A.

Via the GUI at System → Resource Provisioning → Module Allocation

B.

Via TMSH with show /sys provision

C.

Via the GUI at Statistics → Module Statistics → System

D.

Via TMSH with list /sys provision

Question # 6

Given that BIGIP- < version > .iso and Hotfix-BIGIP- < version > -ENG.iso have been uploaded to /shared/images on an F5 device, what is the appropriate tmsh command to prepare and update the BIG-IP device with the hotfix of a software version on a new volume HD1.2 ?

(Choose one.)

A.

tmsh install /sys software hotfix Hotfix-BIGIP- < version > -ENG.iso create-volume HD1.2

B.

tmsh install /sys software BIGIP- < version > .iso hotfix Hotfix-BIGIP- < version > -ENG.iso create-volume HD1.2

C.

tmsh create /sys software hotfix Hotfix-BIGIP- < version > -ENG.iso volume HD1.2

D.

tmsh copy /sys software hotfix Hotfix-BIGIP- < version > -ENG.iso volume HD1.2

Question # 7

What will setting a Self IP to “Allow None” for Port Lockdown do?

A.

Block HA communications, causing the systems to report their peer as offline and go active-active.

B.

Block HA communications, causing the systems to report their peer as online ready.

C.

Default allow port 1026 access between peer devices and traffic processing across the network failover.

Question # 8

When logged into the bash shell of a BIG-IP system, which of the following commands will display the management-ip address ?

(Choose two.)

A.

tmsh list /sys management-ip

B.

show mgmt ip

C.

ifconfig mgmt

D.

list / sys management-ip

Question # 9

The BIG-IP Administrator received a ticket that an authorized user is attempting to connect to the Configuration Utility from a jump host and is being denied.

The HTTPD allow list is configured as:

sys httpd {

allow { 172.28.31.0/255.255.255.0 172.28.65.0/255.255.255.0 }

}

The jump host IP is 172.28.32.22 .

What command should the BIG-IP Administrator use to allow HTTPD access for this jump host?

A.

modify /sys httpd allow replace-all-with { 172.28.32.22 }

B.

modify /sys httpd allow delete { 172.28.31.0/255.255.255.0 172.28.65.0/255.255.255.0 }

C.

modify /sys httpd allow add { 172.28.32.22 }

Question # 10

Which two items demonstrate the creation of a new volume for software images?

(Choose two.)

A.

tmsh install software image /shared/images/BIGIP- < version > .iso volume HD1.5 create-volume

B.

tmsh install /sys software image BIGIP- < version > .iso volume HD1.5 create-volume

C.

Using the GUI, go to System > Disk Management , select New Volume . In the pop-up window, type the name or number of the new volume and click Apply .

D.

tmsh install sys software image /shared/images/BIGIP- < version > .iso volume HD1.5 create-volume

E.

Using the GUI, go to System > Software Management > Available Images > Install , and in the Install Software Image pop-up window, type the new volume name or number and click Install .

Page: 1 / 2
Total 14 questions

Most Popular Certification Exams

Payment

       

Contact us

Site Secure

mcafee secure

TESTED 26 May 2026