- 49 Actual Exam Questions
- Compatible with all Devices
- Printable Format
- No Download Limits
- 90 Days Free Updates
Get All BIG-IP Administration Install, Initial Configuration, and Upgrade Exam Questions with Validated Answers
| Vendor: | F5 Networks |
|---|---|
| Exam Code: | F5CAB1 |
| Exam Name: | BIG-IP Administration Install, Initial Configuration, and Upgrade |
| Exam Questions: | 49 |
| Last Updated: | October 5, 2026 |
| Related Certifications: | F5 Certified Administrator, BIG-IP Certification |
| Exam Tags: | Intermediate Level F5 Network Administrators and System Engineers |
Looking for a hassle-free way to pass the F5 Networks BIG-IP Administration Install, Initial Configuration, and Upgrade exam? DumpsProvider provides the most reliable Dumps Questions and Answers, designed by F5 Networks certified experts to help you succeed in record time. Available in both PDF and Online Practice Test formats, our study materials cover every major exam topic, making it possible for you to pass potentially within just one day!
DumpsProvider is a leading provider of high-quality exam dumps, trusted by professionals worldwide. Our F5 Networks F5CAB1 exam questions give you the knowledge and confidence needed to succeed on the first attempt.
Train with our F5 Networks F5CAB1 exam practice tests, which simulate the actual exam environment. This real-test experience helps you get familiar with the format and timing of the exam, ensuring you're 100% prepared for exam day.
Your success is our commitment! That's why DumpsProvider offers a 100% money-back guarantee. If you don’t pass the F5 Networks F5CAB1 exam, we’ll refund your payment within 24 hours no questions asked.
Don’t waste time with unreliable exam prep resources. Get started with DumpsProvider’s F5 Networks F5CAB1 exam dumps today and achieve your certification effortlessly!
When using the tmsh shell of a BIG-IP system, which command will display the management-ip address?
Within the BIG-IP Traffic Management Shell (tmsh), system configuration objects---including the management IP---are organized under the /sys hierarchy. The management IP address is a configurable property stored in the system configuration and can be viewed using the tmsh list command, which displays configuration objects and their currently assigned values.
Why ''list /sys management-ip'' is correct
The list command in tmsh is used to display configured system values, not runtime statistics.
The object that holds the management IP settings on BIG-IP systems is located at:
/sys management-ip
Running the command:
list /sys management-ip
will reveal the settings for the management IP interface, including the address, netmask, and any associated attributes.
This is the standard method used during system setup and verification to confirm the management IP configuration.
This behavior aligns with BIG-IP administration procedures, where configuration information is retrieved using list, while operational data is retrieved using show.
Why the other options are incorrect
A . run /util bash ifconfig mgmt
This command enters the Bash shell, then runs ifconfig to display the management interface.
While this can show the management interface address, it is not a tmsh-native command, and the question specifically asks for a tmsh command.
Administrators use tmsh directly for configuration display rather than leaving the shell.
C . show /sys management-ip
The show command displays statistics or operational data, not configuration values.
The management-ip object does not maintain statistics; therefore show does not return the configuration details required.
Only the list command reveals stored configuration data such as IP address and netmask.
An F5 BIG-IP Administrator is asked to report which modules are provisioned on the BIG-IP.
In which two ways can this be done?
(Choose two.)
Provisioning determines:
Which BIG-IP modules are enabled (LTM, ASM, APM, AFM, DNS, etc.)
Their provisioning levels (None, Minimal, Nominal, Dedicated)
Two accurate ways to view provisioning settings are:
A . GUI --- System Resource Provisioning Module Allocation
This is the primary GUI screen showing:
All modules
Their provisioning level
System resource distribution impact
Administrators commonly use this page to confirm or change module provisioning.
D . TMSH --- list /sys provision
This tmsh command displays each module and its provisioning level:
sys provision ltm { level nominal }
sys provision asm { level none }
...
This is the authoritative CLI method for checking module provisioning configurations.
Why the other options are incorrect:
B . show /sys provision
Shows runtime information but not the actual configuration levels.
list is the correct command for configuration details.
C . Statistics Module Statistics
Shows performance statistics, NOT provisioning status.
Therefore, the correct responses are A and D.
The Configuration Utility of a BIG-IP device is currently accessible via its management IP 10.53.1.245 from all VLANs.
The BIG-IP Administrator needs to restrict access so only hosts from the 10.0.0.0/24 subnet can access the Configuration Utility.
Which TMSH command accomplishes this?
BIG-IP controls access to the web-based Configuration Utility (TMUI) through the /sys httpd allow list. This parameter specifies which client IPs or subnets may initiate HTTP/HTTPS connections to the management interface.
To restrict TMUI access to only the 10.0.0.0/24 subnet:
The correct method is to modify the HTTPD allow list so that it contains only this subnet.
This requires replacing the entire current list with the new subnet using:
modify /sys httpd allow replace-all-with {10.0.0.0/24}
This ensures that only clients within 10.0.0.0/24 can reach the Configuration Utility.
Why the other options are incorrect:
Options A and C create network ACL objects under /net acl, which apply to data-plane traffic, not management-plane TMUI access. TMUI access is not controlled by LTM ACLs but by the HTTPD allow directive.
Option B is incorrect syntax and references /ltm httpd, which is not the proper object; the correct hierarchy is /sys httpd.
Thus, only modifying the /sys httpd allow list achieves the required restriction.
Which configuration file can a BIG-IP administrator use to verify the provisioned modules?
Provisioning settings define which modules are enabled and how system resources are allocated to them.
These provisioning declarations are stored in:
/config/bigip.conf
This file contains:
Full module provisioning statements
TMSH-equivalent provisioning configurations such as:
sys provision ltm { level nominal }
sys provision asm { level nominal }
It is the primary system configuration file that stores all active provisioning details.
Why the other answers are incorrect
A . /config/bigip.license
Shows licensed modules, not provisioned modules.
B . /config/bigip_base.conf
Stores base networking (VLANs, Self-IPs, routes), not provisioning.
D . config.ucs
A backup archive, not a live configuration file.
Thus, the correct file to review active module provisioning is /config/bigip.conf.
A secondary administrator has been granted access to a BIG-IP device through its Management Interface, but is unable to access the Configuration Utility (WebUI).
What command can be run from the CLI to capture the network traffic on the management interface and troubleshoot the issue?
(Choose two.)
The BIG-IP has two distinct planes:
Management-plane handled entirely by the management interface (MGMT)
Data-plane (TMM) handles Self IPs, VLAN interfaces, and traffic processing
To capture traffic on the management interface, only the management-side NICs may be used:
mgmt Logical name for the management interface
eth0 Physical Linux interface mapped to the management port on most BIG-IP platforms
Both of these correctly capture inbound/outbound WebUI (HTTPS/443) traffic on the management port.
Why the correct answers are A and B
A . tcpdump -i eth0 -n port 443
On BIG-IP appliances and VMs, the management port maps to eth0 at the Linux OS level.
Capturing on eth0 correctly shows HTTPS traffic to the WebUI.
B . tcpdump -i mgmt -n port 443
mgmt is the BIG-IP alias for the management interface.
This is the preferred and most explicit capture interface for management-plane packet captures.
Why the other options are incorrect:
C . tcpdump -i 0.0
Interface 0.0 is the TMM switch interface used for data-plane packet captures.
It does NOT capture management-plane traffic.
D . tcpdump -i tun0
Used for tunnel interfaces (IPsec, VXLAN, etc.)
Not related to management access.
E . tcpdump -i management
There is no interface named management on BIG-IP.
The correct names are mgmt or eth0.
Security & Privacy
Satisfied Customers
Committed Service
Money Back Guranteed