201 Exam Details

  • Exam Code
    :201
  • Exam Name
    :TMOS Administration
  • Certification
    :F5 Certifications
  • Vendor
    :F5
  • Total Questions
    :254 Q&As
  • Last Updated
    :Jul 11, 2026

F5 201 Online Questions & Answers

  • Question 171:

    A BIG-IP Administrator configures a Virtual Server. Users report that they always receive a TCP RST packet to the BIG-IP system when attempting to connect to it. What is the possible reason for this issue?

    A. The virtual server Type is set to Internal
    B. The virtual server Type is set to Reject
    C. The virtual server Type is set to Drop
    D. The virtual server Type is set to Stateless

  • Question 172:

    A BIG-IP Administrator uses a device group to share the workload and needs to perform service on a BIG-IP device currently active for a traffic group. The administrator needs to enable the traffic group to run on another BIG-IP device in the device group. What should the administrator do to meet the requirement?

    A. Create a new Traffic Group and then fail to Standby Unit
    B. Select Traffic Group and then select Failover
    C. Select Traffic Group and then select Force to Standby
    D. Select Traffic Group on Primary Unit and then select Demote

  • Question 173:

    An IT support engineer needs to access and modify Virtual Servers in three partitions (Common /Banking and Dev) daily on a BIG-IP device. The company operates a Least Privilege access policy. What level of access does the IT support engineer need to ensure completion of daily roles?

    A. Manager in /common/Banking, and /Dev partitions
    B. Application Editor in /Common, /Banking, and /Dev partitions
    C. Manager in all partitions
    D. Application Editor in all partitions

  • Question 174:

    A BIG-IP device is configured with both an internal external and two Corporate VLANs. The virtual server has SNAT enabled and is set to listen on all VLANs Auto Last Hop is disabled. The Corporate users are on 10.0.0.0./24 and 172.16.0.0/12. The BIG-IP has a Self-IP on the 1.0.0.0.0./24 subnet.

    Internet users are able to access the virtual server. Only some of the Corporate users are able to connect to the virtual server A BIG-IP Administrator performs a tcpdump on the BIG-IP and verifies that traffic is arriving from users in 10.0.0.0/24.

    What should the BIG-IP Administrator do to correct this behaviour?

    A. Disable the server on the internal VLAN
    B. Add a static route for the 172.16.0.0/12 subnet
    C. Change the default route to point to the extra firewall
    D. Modify the default route of the servers to point to the BIG-IP device

  • Question 175:

    Which statement is true regarding failover?

    A. Hardware failover is disabled by default.
    B. Hardware failover can be used in conjunction with network failover.
    C. If the hardware failover cable is disconnected, both BIGIP devices will always assume the active role.
    D. By default, hardware fail over detects voltage across the failover cable and monitors traffic across the internal VLAN.

  • Question 176:

    A BIG-IP Administrator creates a new VLAN on BIG-IP Cluster Member A and attaches an Interface to it. Although the Auto Config Sync is in place, the new VLAN does NOT show up on Cluster Member B. What should the BIG-IP Administrator do to ensure the new VLAN is configured on each Cluster Member?

    A. Configure the new VLAN manually on Cluster Member B.
    B. Reset the Device Trust of the BIG-IP Cluster on either Cluster Member.
    C. Configure a Default Route for the new VLAN on Cluster Member A.
    D. Enable the Interface that is attached to the new VLAN on Cluster Member A.

  • Question 177:

    Which two can be a part of a virtual server's definition? (Choose two.)

    A. rule(s)
    B. pool(s)
    C. monitor(s)
    D. node address(es)
    E. loadbalancing method(s)

  • Question 178:

    Assume a virtual server has a ServerSSL profile. What SSL certificates are required on the BIG-IP?

    A. No SSL certificates are required on the BIG-IP.
    B. The BIG-IP's SSL certificates must only exist.
    C. The BIG-IP's SSL certificates must be issued from a certificate authority.
    D. The BIG-IP's SSL certificates must be created within the company hosting the BIG-IPs.

  • Question 179:

    Which is an advantage of terminating SSL communication at the BIGIP rather than the ultimate web server?

    A. Terminating SSL at the BIG-IP can eliminate SSL processing at the web servers.
    B. Terminating SSL at IP the eliminates BIG all unencrypted traffic from the internal network.
    C. Terminating SSL at the BIG-IP eliminates the need to purchase SSL certificates from a certificate authority.
    D. Terminating SSL at the BIG-IP eliminates the need to use SSL acceleration hardware anywhere in the network.

  • Question 180:

    When initially configuring the BIG-IP system using the config utility, which two parameters can be set? (Choose two.)

    A. the netmask of the SCCP
    B. the IP address of the SCCP
    C. the port lockdown settings for the SCCP
    D. the netmask of the host via the management port
    E. the IP address of the host via the management port
    F. the port lockdown settings for the host via the management port

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only F5 exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your 201 exam preparations and F5 certification application, do not hesitate to visit our Vcedump.com to find your solutions here.