ExamGecko
Home Home / F5 / 301a
Question list
Search
Search

List of questions

Search

Related questions











Question 100 - 301a discussion

Report
Export

An LTM Specialist has detected that a brute force login attack is occurring against the SSH service via a BIG-IP management interface. Login attempts are occurring from many IPs within the internal company network. BIG-IP SSH access restrictions are in place as follows:

The LTM Specialist has determined that SSH access should only occur from the 192.168.1.0/24 and 172.16.254.0/23 networks.

Which tmsh command should the LTM Specialist use to permit access from the desired networks only?

A.
modify.sys sshd allow add {''192.168. 10/24 , '' ''172. 16 2540/23'')
Answers
A.
modify.sys sshd allow add {''192.168. 10/24 , '' ''172. 16 2540/23'')
B.
modify /sys sshd login disable (''10.0.00/8'', ''172 16.0 0/12'', ''192. 168.0.0/16'')
Answers
B.
modify /sys sshd login disable (''10.0.00/8'', ''172 16.0 0/12'', ''192. 168.0.0/16'')
C.
modify/sys allow replace-all-with {''192.168.1.00/24'', ''192.16.254.0/23''}
Answers
C.
modify/sys allow replace-all-with {''192.168.1.00/24'', ''192.16.254.0/23''}
D.
modify/sys sshd login enable {''192.166.10/24'''' ''172.16 254 0/23
Answers
D.
modify/sys sshd login enable {''192.166.10/24'''' ''172.16 254 0/23
Suggested answer: C

Explanation:

Select C to overwrite the existing network's allow configuration over the specified network segment.

asked 24/09/2024
Salih Igde
39 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first