Exam Name: Foundry Networks Certified Layer4-7 Professional Exam Type: Foundry Exam Code: FN0-240 Total Questions: 267



Similar documents
ServerIron TrafficWorks Firewall Load Balancing Guide

Server Iron Hands-on Training

ServerIron TrafficWorks Server Load Balancing Guide

Advanced SLB High Availability and Stateless SLB

BCLP in a Nutshell Study Guide for Exam Exam Preparation Materials

CLE202 Introduction to ServerIron ADX Application Switching and Load Balancing

Configuring VIP and Virtual IP Interface Redundancy

DATA CENTER. Best Practices for High Availability Deployment for the Brocade ADX Switch

Layer 4-7 Server Load Balancing. Security, High-Availability and Scalability of Web and Application Servers

Understanding Slow Start

FortiOS Handbook - Load Balancing VERSION 5.2.2

Chapter 3 Using Access Control Lists (ACLs)

Configuring Health Monitoring

Exam : EE : F5 BIG-IP V9 Local traffic Management. Title. Ver :

December ServerIron ADX. Firewall Load Balancing Guide. Supporting Brocade ServerIron ADX version

Configuring Stickiness

Load Balancing and Sessions. C. Kopparapu, Load Balancing Servers, Firewalls and Caches. Wiley, 2002.

FortiOS Handbook Load Balancing for FortiOS 5.0

GLOBAL SERVER LOAD BALANCING WITH SERVERIRON

Appendix A Remote Network Monitoring

Load Balancing. FortiOS Handbook v3 for FortiOS 4.0 MR3

Chapter 2 Quality of Service (QoS)

Firewall Load Balancing

Managing Virtual Servers

Availability Digest. Redundant Load Balancing for High Availability July 2013

Securing Networks with PIX and ASA

Brocade to Cisco Comparisons

Chapter 16 Route Health Injection

ServerIron Combined Patch Release Notes

A Standard Modest WebSite

Global Server Load Balancing (GSLB) Concepts

Introduction to ServerIron ADX Application Switching and Load Balancing. Module 6: Content Switching (CSW) Revision 0310

SERVERIRON INTERNET TRAFFIC MANAGEMENT

Introduction to ServerIron ADX Application Switching and Load Balancing. Module 5: Server Load Balancing (SLB) Revision 0310

High Availability. Palo Alto Networks. PAN-OS Administrator s Guide Version 6.0. Copyright Palo Alto Networks

High Availability. FortiOS Handbook v3 for FortiOS 4.0 MR3

December ServerIron ADX. Global Server Load Balancing Guide. Supporting Brocade ServerIron ADX version 12.5.

Chapter 51 Server Load Balancing

Cisco ASA, PIX, and FWSM Firewall Handbook

What's New in Cisco ACE Application Control Engine Module for the Cisco Catalyst 6500 and Cisco 7600 Series Software Release 2.1.0

Configuring Health Monitoring

Deploying SAP NetWeaver Infrastructure with Foundry Networks ServerIron Deployment Guide

Chapter 7 Configuring Trunk Groups and Dynamic Link Aggregation

Networking and High Availability

Chapter 11 Network Address Translation

IOS Server Load Balancing

Troubleshooting the Firewall Services Module

WHITE PAPER MICROSOFT LIVE COMMUNICATIONS SERVER 2005 LOAD BALANCING WITH FOUNDRY NETWORKS SERVERIRON PLATFORM

Chapter 6 Configuring IP

Networking and High Availability

Chapter 4 Rate Limiting

Deployment Guide AX Series with Active Directory Federation Services 2.0 and Office 365

Configuring System Message Logging

Chapter 37 Server Load Balancing

CCNP Switch Questions/Answers Implementing High Availability and Redundancy

Brocade Certified Layer 4-7 Professional Version: Demo. Page <<1/8>>

Cisco Configuring Commonly Used IP ACLs

Troubleshooting the Firewall Services Module

Configuring Static and Dynamic NAT Translation

NLoad Balancing Stackable Switch

VERITAS Cluster Server Traffic Director Option. Product Overview

F5 Configuring BIG-IP Local Traffic Manager (LTM) - V11. Description

IOS Server Load Balancing

Content Switching Module for the Catalyst 6500 and Cisco 7600 Internet Router

Outline VLAN. Inter-VLAN communication. Layer-3 Switches. Spanning Tree Protocol Recap

How To Configure The Fortigate Cluster Protocol In A Cluster Of Three (Fcfc) On A Microsoft Ipo (For A Powerpoint) On An Ipo 2.5 (For An Ipos 2.2.5)

Configuring the Transparent or Routed Firewall

Guide to Network Defense and Countermeasures Third Edition. Chapter 2 TCP/IP

Cisco Local Director Abstract. Stephen Gill Revision: 1.0, 04/18/2001

Transparent Cache Switching Using Brocade ServerIron and Blue Coat ProxySG

BCLE in a Nutshell Study Guide for Exam Exam Preparation Materials

Configuring the BIG-IP and Check Point VPN-1 /FireWall-1

Firewall Firewall August, 2003

High Availability Failover Optimization Tuning HA Timers PAN-OS 6.0.0

Cisco Application Networking Manager Version 2.0

APV9650. Application Delivery Controller

Troubleshooting and Maintaining Cisco IP Networks Volume 1

Introduction to ServerIron ADX Application Switching and Load Balancing. Module 7: Global Server Load Balancing (GSLB) Revision 0310

EE Easy CramBible Lab DEMO ONLY VERSION EE F5 Big-Ip v9 Local Traffic Management

CCNP SWITCH: Implementing High Availability and Redundancy in a Campus Network

Load Balancing Trend Micro InterScan Web Gateway

How To Understand and Configure Your Network for IntraVUE

INTRODUCTION TO FIREWALL SECURITY

Configuring Failover. Understanding Failover CHAPTER

Configuring Class Maps and Policy Maps

Load Balancing SIP Quick Reference Guide v1.3.1

ExamPDF. Higher Quality,Better service!

Configuring Network Address Translation

Procedure: You can find the problem sheet on Drive D: of the lab PCs. Part 1: Router & Switch

Magnum Network Software DX

A S B

Chapter 8 Security Pt 2

7750 SR OS System Management Guide

TechBrief Introduction

INVITATION FOR BIDS (IFB) NO FURNISH, DELIVER, AND INSTALL APPLICATION DELIVERY SWITCHES FOR INFORMATION TECHNOLOGY SERVICES

- Redundancy and Load Balancing -

Basic & Advanced Administration for Citrix NetScaler 9.2

NETASQ MIGRATING FROM V8 TO V9

Server Load Balancing Configuration Guide Cisco IOS Release 12.2SX

Firewalls. Chapter 3

Transcription:

Question: 1 SYN-Guard and SYN-Defense can be configured on: A. ServerIron XL B. ServerIron 100 C. ServerIron 400 D. ServerIron 800 E. ServerIron 450 F. ServerIron 850 G. ServerIron GT-E, C, D, E, F, G Question: 2 The best practice method to configure SSL Layer7 switching is A. URL switching B. Cookie switching C. Session ID switching D. Round robin Question: 3 sflow is supported on the: A. ServerIron XL B. ServerIron 100 C. ServerIron 400 D. ServerIron 800 E. ServerIron 450 F. ServerIron 850 G. ServerIron GT-E Answer: E, F, G Question: 4 The maximum length of the URLcharacter is the same for the ServerIron XL and the ServerIron 400 product families? Question: 5 When using Layer 7 Switching, what command would you use to instruct the ServerIron to buffer all request packets until all the necessary information is received insuring that the whole HTTP header will be saved? A. port http B. port http buffer-for-end-http C. port http wait-for-end-header D. port http wait-for-end-http Page 1 of 58

Answer: D Question: 6 A UDP application is considered down if the server returns: A. No packet B. A garbage packet C. An UDP probe packet D. An ICMP unreachable packet Answer: D Question: 7 An active health check is done: A. At each user request B. According to the configured time values C. When the Reassign-Threshold is exceeded D. When there is a status change from the server Question: 8 An HTTP health check can return: A. A keepalive B. Status code C. Content verification D. A value to increment the Reassign-Threshold, C Question: 9 Which of the following Health Check types are performed at Layer 7? A. Arp Request B. TCP C. HTTP D. IMAP4 E. UDP F. LDAP G. MMS H. RSTP, D, F, G Question: 10 How many simultaneous levels of health checks can be configured on the ServerIron to health check the same real server A. Layer 3, Layer4 B. Layer4, Layer7 C. Layer3, Layer4, Layer7, content match D. Layer 4, Layer7, content match Page 2 of 58

Question: 11 What will be the corresponding Virtual MAC Address belonging to a configured VIP 175.30.15.10 (AF:1E:0F:0A) A. VMACs have to be manually configured B. AF:1E:0F:0A:FF:FF C. 02:0C:DB:1E:0F:0A D. 02:0C:AF:1E:0F:0A Question: 12 What must be done before a Health-Check Policy will take effect? A. The Health-Check Policy must be bound to the VIP B. The Health-Check Policy intervals and reset must be define C. The Health-Check Policy must be attached to an application port on a real server D. The Health-Check Policy must be configured to use 3-way handshaking Question: 13 A Matching List can contain: A. Log B. URL C. Down simple D. Status codes E. Up Compound, C, E Question: 14 When health checking is enabled, a server response time consists of the combination of its response to client requests and its response to Layer 4 or Layer 7 health checks from the ServerIron. Question: 15 When using a scripted health check, the default health check is disabled. Question: 16 A scripted health check can only contain searches for: Page 3 of 58

A. ASCII content B. Status codes C. Status codes and ASCII content D. Status codes, ASCII content and keepalives Question: 17 Port profiles are used to define: A. Port types B. Status of ports C. Well known ports D. HTTP health checks Question: 18 The Foundry ServerIron can perform Layer 7 health checks on the following TCP applications (select all that applies)? A. FTP (port 21) B. POP3 (port 110) C. LDAP (port 389) D. SNMP, B, C Question: 19 Health checks to port 443 can be: A. Secure B. Simple C. Simple and Secure D. Simple, Secure and Boolean, B Question: 20 A Port Profile is a set of attributes that defines a TCP/UDP port. Which of the following are valid Port Profile Attributes? A. l4-healthck B. Keepalive interval and retries C. TCP or UDP age D. Keepalive state, C, D Question: 21 disabling layer 4 health checks will automatically disable layer 7 health checks Page 4 of 58

Question: 22 Each Matching List must have a name Question: 23 On the ServerIrons 400/800, the Health Checks are performed by what section of the hardware? A. The Management processor B. The Barrel processors C. The IPC processors D. WSM processor Question: 24 If a string that meets the selection criteria is a subset of another: A. The longer string takes precedence B. The shorter string takes precedence C. The string that is read last takes precedence D. The string that is read first takes precedence Question: 25 What is the command syntax for setting up a layer 7 heathcheck for HTTP 1.1? A. port http url "GET /www.abc.com HTTP1.1\r\n\r\n" B. port url http "http 1.1/" C. port http url "GET / HTTP/1.0\r\nHost: www.domain1.com\r\n\r\n" D. port http url "GET / HTTP/1.0\r\ E. port http url "GET / HTTP/1.1\r\nHost: www.domain1.com\r\n\r\n" Answer: E Question: 26 For any application port, the "sticky" command is used to: A. bind real servers B. configure persistence C. create sessions D. cookie switching Question: 27 How does the ServerIron measure response time in Direct Server Return configurations? A. The ServerIron uses the reply traffic to measure the response time. Page 5 of 58

B. The ServerIron uses the Health Check and the reply traffic and applies the smooth factor to get the average C. The ServerIron uses the Server Response Time Weights parameter to measure response time. D. The ServerIron uses the Health Check responses to measure response time. Answer: D Question: 28 The WSM6 module A. Balances traffic to and from the management processor B. Manages the SI850 and SI450 C. Has 6 management processors D. Can be configured as a WSM-100 Question: 29 What is the design advantage of using Symmetric Sever Load Balancing (SSLB) over Hot Standby redundancy? A. You can use Port Monitoring. It is not supported on the standby ServerIron B. You are limited to only one pair of standby ServerIrons per broadcast domain. C. You do not have to dedicate a ServerIron as a Standby. D. You do not have to worry about STP interfering with Hot Standby communications, C Question: 30 How often does the Serveriron ARP for a real server after it is up by default? A. It does not arp for the server once it is up. B. Every 5 mins C. Every 2 mins D. Every 20 seconds E. Every 2 seconds Answer: D Question: 31 With the proxy server cache load balancing featured configured, what is required to ensure clients whose browsers with Proxy IP configured are served transparently? A. The ServerIron performs tranparent TCS, using the normal hash mechanism to map the request B. A VIP must be configured with the same IP address as the proxy C. You must identify the ports as UDP so the appropriate health checks are used D. Requires clients to reconfigure their web browsers to point to a proxy server Question: 32 Setting the QOS policy to "CACHE" does what? Page 6 of 58

A. Disables Transparent Cache Switching (TCS) B. Enables Transparent Cache Switching (TCS) C. Sets the QoS cache for low priority traffic D. Enabled Firewall Load Balancing E. Disables Firewall Load Balancing Question: 33 Which devices support ServerIron Link Balancer? A. ServerIron XL B. ServerIron 100 C. ServerIron 400 D. ServerIron 800 E. ServerIron 450 F. ServerIron 850 G. ServerIron GT-E Question: 34 The ServerIron in a non-routed environment always translates the MAC address in response from a real server into the MAC address of the virtual IP address before sending the response to the client. Question: 35 Which of the following is an alternative to Hot Standby Redundancy? A. Symmetric Server Load Balancing B. Global Server Load Balancing C. Server Load Balancing D. System Server Load Balancing Question: 36 What is the CLI command to display the synchronization settings for the Active Redundant and the Standby Redundant Management Modules? A. standby B. sync-standby C. sync-sync D. standby - Sync Question: 37 Page 7 of 58

The output of the "show server real" displays information about the real servers. The "Ms" field contains the value of the Master Port State, and only applies to track ports and to ports to which you have bound other TCP/UDP ports.. The possible values are: A. 3 -Test B. 5 -Unbnd C. 1-Enable D. 3 -TestUp E. 6-Active F. 2 - Failed, C, E, F Question: 38 What is the number of sessions that a ServerIron with 32MB of memory installed can support? A. 500.000 B. 160,000 C. 1,000,000 D. 1,160,000 Question: 39 Below is the output from the "show server backup?command. What does it means when the "SLB Partner MAC" value is all zeros? Switch state = Active SLB state =0 SLB partner MAC valid = 0 SLB Partner MAC = 0000.0000.0000 SLB Partner port cnt = 24 Transactions, activate s= 0,standby= 0 Pdus sent = 10,MAC pdu Sent= 10 No pdus = 0, no port maps= 0 ServerIron> show server backup Server Backup port configured A. Nothing, This is the normal behavior for the standby ServerIron. B. It indicates that a layer 4 MAC synchronization is in progress. C. It indicates that you have lost layer 2 connectivity with the partner ServerIron D. It indicates that the Partner ServerIron is ready for Failover. (the Partner Mac is only displayed when there is a failure). Question: 40 Exhibit: Page 8 of 58

In the exhibit, what commands would have to be entered in order to enable the configuration of VRRP-Extended? A. boot system flash primary B. boot system flash secondary C. boot system flash secondary; wsm boot secondary D. boot system flash primary; wsm boot secondary E. reload F. erase start; reload Question: 41 When setting up Symmetric SLB, what must be configured to ensure that sessions on the active ServerIron failover to the backup ServerIron in the event that the active ServerIron fails. A. IP Synchronization B. Application Synchronization C. Session Synchronization D. Port Synchronization Page 9 of 58

Question: 42 If the ServerIron is attached to multiple routers or to a single router configured for VRRP, FSRP, or HSRP, you must identify the ports on the ServerIron that are attached to the router(s). Why? A. Explicitly identifying the ports enables the ServerIron to handle the Layer 2 traffic correctly. B. Explicitly identifying the ports enables the ServerIron to handle the Layer 4 traffic correctly. C. Explicitly identifying the ports enables the ServerIron to handle the Layer 3 traffic correctly. D. Explicitly identifying the ports enables the ServerIron to handle the VRRP, FSRP, or HSRP Failover correctly. Question: 43 What command enables enhanced weighted SLB predictor? A. Server predictor-enhanced-weighted B. Server predictor weighted C. Server enhanced-weighted D. Server weighted-enhanced Question: 44 What command is used to bind realserver1 and realserver2 under VIP1 for the http port? A. Bind http realserver1 realserver2 B. Bind realserver1 http realserver2 http C. Bind http realserver1 http realserver2 http D. Bind realserver1 realserver2 http Question: 45 Configuring a port to be Stateless is useful when? A. You want to reserve session table resources. B. You don't want to use memory storing statistics C. You have configured the VIP to be transparent D. When the application port is not a well know port, C Question: 46 The ServerIron Chassis supports redundant management modules. This creates a requirement that the software between the active and standby management modules is synced.. Which of the following file(s) are synced-up at predetermine intervals? A. Running-config B. Boot code C. Start-up Config-File D. Flash code, C, D Page 10 of 58

Question: 47 The ServerIron XL supports: A. ip forwarding B. RIP C. OSPF D. IS-IS E. BGP4, B Question: 48 What is the command to enabled Layer 4 Switching on the ServerIron Ironcore Chassis starting with release 8.1R? A. ip l4-policy 1 cache tcp 0 global B. rconsole 1 1 ip policy 1 cache tcp 0 global C. ip policy 1 cache tcp 0 global D. l4 switching is enable by default Question: 49 Exhibit: Page 11 of 58

In the exhibit, what are the possible types of management module that is being used? A. WSM4 B. WSM6 C. WSM4-100 D. WSM6-1 E. WSM6-2 F. VM, B Question: 50 What is the recommended low priority setting and high priority setting when configuring Symmetric SLB? A. Low = 0, High = 255 B. Low = 1, High = 254 C. Low = -1, High = 255 D. Low = -1, High = 254 Page 12 of 58

Question: 51 The SI Layer2 ARP request is disabled for remote server configurations Question: 52 When using the weighted percentage method (Predictor), you must configure real servers and? A. The Global Servers B. The Web Servers C. The Virtual Server D. The Backup Servers Question: 53 When you apply the application grouping parameter for a port and the VIP that has a Load Balancing Predictor defined, Which one takes precedence? A. The application grouping parameter B. The Load balancing Predictor C. The setting that was configured first D. Only the servers that is also sticky Question: 54 What is it called when the ServerIron does not process every TCP or UDP packet in a given session, instead it uses information gather during the setup of the session to forward packets.? A. TCP or UDP Fast Aging B. Fast-path SLB processing C. Connection Logging D. Smooth Factor Question: 55 What is the default predictor for load balancing on Foundry Networks ServerIron product family A. Round Robin B. Least Connections C. Weighted D. Best server predictor Question: 56 Which Features are NOT supported in 9.1R? ( Select all that apply ) A. VRRP Page 13 of 58

B. FSRP C. RIP D. OSPF E. BGP F. VRRP-E, E Question: 57 Which HA feature is not supported in Router Code A. Active-Active B. Hot-Stby C. Active-Stby D. Active-Passive Question: 58 Which of the following are selectable types of Quality of Service (QoS)? A. Layer 4 session packet-based B. Layer 2 Flow control (802.3x) C. Layer 3 802.1p/802.1q D. Layer 2 Packet-based priority (Policy), B, D Question: 59 To define how requests are distributed among multiple web cache servers within a cache-group, the following command is used: A. mask-hash <destination-ip-mask><source-ip-mask> B. hash-mask <destination-ip-mask><source-ip-mask> C. hash-mask <server> < source-ip-mask> <destination-ip-mask> D. mask <source-ip-mask> <destination-ip-mask> Question: 60 In order to configure the ServerIron to remove any entry from its session table if the connection remains incomplete for more than 5 seconds, what command would be use? A. server syn-def drop 5 B. server syn-def 5 C. syn-def server 5 D. syn-def server def 5 Question: 61 On the ServerIron 450 running release 9.x, what is the total number of sticky sessions supported A. 3 Million B. 2 Million Page 14 of 58

C. 1 Million D. 500 Thousand E. Unlimited Answer: E Question: 62 Which of the following are features of the Web Switching Management Module used to power the ServerIron 100, 400, and 800 series? A. Management Processor LEDs B. Web Switching Management CPU LEDs C. Network Interface RJ45 D. Serial Port DB9, B, D Question: 63 Stateless SLB optimization is supported on the following TCP or UDP well known ports. Choose all that applies. A. 80 (HTTP) B. 49 (TACACS) C. 92 (NPP) D. 21 (FTP) E. 107 (rtelnet), B, D Question: 64 What feature is used to configure multiple ServerIrons to load Balance the same VIP? A. Stateless VIPs B. Transparent VIPs C. Unlimited VIPs D. Sticky VIPs Question: 65 By default, the ServerIron translates the application port number requested by the client into the application port number you specify on the virtual server when you bind it to the real server. Question: 66 Exhibit: Page 15 of 58

The "show server traffic" command displays the current activity on the Company server (See Exhibit). Which of the following shows the number of incomplete connections A. Drops B. Stale Drops C. Fw drops D. TCP SYN-DEF RST Answer: D Question: 67 Syn-Defense and Syn Guard can be configured simultaneously? Question: 68 Transaction Rate Limiting: A. Cannot be used with SYN-Guard B. Sets the total number of sessions a client can make to a server in a specified time period C. Limits the number of connections a client can establish to a server in a specified time period. D. Sets the total number of transactions that the ServerIron can process in a specified time period E. Sets the maximum number of transactions a user can make through the ServerIron in a specified time period Answer: E Question: 69 On the ServerIron 400/800 product running router code, you must enable NAT globally. You cannot enable NAT on an individually interface. Question: 70 SYN-Defense A. Times out the connection if there is no 'fin sent Page 16 of 58

B. Times out the connection if there is no 'ack' sent C. Waits for the completion of the 3 way handshake before sending the 'fin' D. Waits for the for completion of the 3 way handshake before sending the 'reset' Question: 71 You can turn on the TCP SYN Defense function through the Web Management Interface. Question: 72 The output in the exhibitbelow was produced by the following "show" command Exhibit: Company (config)# show?. Client ->Server =26753 Server->Client=24817 Drops =4 Aged=38 Fw_drops =0 Rev_drops=0 FIN_or_RST =8429 old_conn=0 Disable_drop =0 Exceed_drop=0 Stale_drop =14 Unsuccessful=0 A. show server real B. show server sessions C. show server traffic D. show server stats Question: 73 What function does the following command perform? security hold-source-ip 192.168.9.210 20 A. Refuses the connection to the specified host for 20 seconds B. Set the specified ip address as the primary source address for communications with 20 seconds polling C. Refuse the connection to the specified host for 20minutes D. Set the specified ip address and the following 20 addresses as the primary source group address for communications with 20 seconds polling Question: 74 SYN-Guard A. Allows the ServerIron to complete the 3 way handshake B. Configures the ServerIron to establish a time out period for completion of the 3 way handshake C. Completes the 3 way hand shake for the server before initializing the connection to the server. D. Sends the 3 way handshake to the server and waits for the 'ack' to complete the 3 way handshake Page 17 of 58

Question: 75 Connection Rate Limiting: A. Cannot be used with SYN-Guard B. Sets the total number of sessions a client can make to a server C. Limits the number of connections a client can establish to a server. D. Sets the total number of connections that the ServerIron can process E. Sets the total number of connections a user can make through the ServerIron Answer: D Question: 76 When setting the server up to be in groups, the servers must be: A. In only one group B. At least two groups C. In a range of groups D. Defined as being on a beginning group and an ending group Question: 77 The feature that allows the ServerIron to forward only packets associated with an established connection to the server is called Syn Defense. Question: 78 In which case will the ServerIron insert a cookie? A. There is no cookie header B. The cookie value is out of range C. The server indicated by the cookie is not available D. The cookie value exists but points to an incorrect server E. The cookie name is not the name specified by the 'port http cookie-name', B, C, E Question: 79 The ServerIron can delete a cookie that it set. Question: 80 Cooking hashing guarantees session persistence Page 18 of 58

Question: 81 What is the default load balancing method used for Firewall load balancing on ServerIron Stackable products? A. Hashing B. Round robin C. Session based sticky D. Stateful Question: 82 Repeated executions of 'show server real' displays the real server status as 'failed'/'active'. This problem could be caused by the failure of which health check: A. Layer 2 B. Layer 3 C. Layer 4 D. Layer 5 E. Layer 7 Answer: E Question: 83 The Global Server Load Balance (GSLB) serveriron uses the GSLB protocol to learn the following (select all that applies)? A. Available sessions of the site ServerIrons B. Firewall server's real name C. Session table statistics D. Round-Trip-Time, C, D Question: 84 The ServerIron that is the GSLB Controller can also be used to balance web servers. Question: 85 When using the 'debug filter' you would like to filter for a TCP SYN or a TCP RST, in order to do that you would write: A. (debug-filter-spec-1)#tcp fin or reset B. (debug-filter-spec-1)#tcp fin (debug-filter-spec-2)#tcp reset C. (debug-filter-spec-1)#tcp fin (debug-filter-spec-1)#tcp reset Page 19 of 58

(debug-filter)#apply "tcp fin or reset" D. (debug-filter-spec-1)#tcp fin (debug-filter-spec-1)#tcp reset (debug-filter)#apply "1 or 2" E. (debug-filter-spec-1)#tcp fin (debug-filter-spec-2)#tcp reset (debug-filter)#apply "1 or 2" Answer: E Question: 86 Route Health Injection A. Sets the routing to the host by listing them by health in the router table B. Checks for the health of the server by using the router C. Determines the route to the nearest server by using the host address in the router D. Allows the ServerIron to insert the health of the nearest server into the router Question: 87 A UDP health check upon initialization can include: A. ARP B. PING C. SYN D. SYN-ACK E. RST F. Garbage packet (meaningless data), B, F Question: 88 The Distributed Health Check A. Distributes the health checking task to the site ServerIrons. B. Lets the GSLB Controller request the health of distributed servers C. Allows the Local ServerIrons to report their health to the GSLB Controller D. Lets the GSLB Controller request the health of distributed Local ServerIrons Question: 89 A TCP health check upon initialization can include: A. ARP B. PING C. SYN D. SYN-ACK E. RST F. Garbage packet, B, C, D, E Question: 90 Page 20 of 58

To temporally disqualify a GSLB site from being selected, you would configure the: A. Least Response selection B. GSLB Administrative Preference C. Site ServerIrons available session capacity D. Site ServerIrons administrative preference Answer: D Question: 91 The maximum length of the URLcharacter is the same for the ServerIron XL and the ServerIron 400 product families? Question: 92 SYN-Guard and SYN-Defense can be configured on: A. ServerIron XL B. ServerIron 100 C. ServerIron 400 D. ServerIron 800 E. ServerIron 450 F. ServerIron 850 G. ServerIron GT-E, C, D, E, F, G Question: 93 The best practice method to configure SSL Layer7 switching is A. URL switching B. Cookie switching C. Session ID switching D. Round robin Question: 94 sflow is supported on the: A. ServerIron XL B. ServerIron 100 C. ServerIron 400 D. ServerIron 800 E. ServerIron 450 F. ServerIron 850 G. ServerIron GT-E Answer: E, F, G Question: 95 Page 21 of 58

When using Layer 7 Switching, what command would you use to instruct the ServerIron to buffer all request packets until all the necessary information is received insuring that the whole HTTP header will be saved? A. port http B. port http buffer-for-end-http C. port http wait-for-end-header D. port http wait-for-end-http Answer: D Question: 96 You can turn on the TCP SYN Defense function through the Web Management Interface. Question: 97 Syn-Defense and Syn Guard can be configured simultaneously? Question: 98 SYN-Defense A. Times out the connection if there is no 'fin' sent B. Times out the connection if there is no 'ack' sent C. Waits for the completion of the 3 way handshake before sending the 'fin' D. Waits for the for completion of the 3 way handshake before sending the 'reset' Question: 99 What function does the following command perform? security hold-source-ip 192.168.9.210 20 A. Refuses the connection to the specified host for 20 seconds B. Set the specified ip address as the primary source address for communications with 20 seconds polling C. Refuse the connection to the specified host for 20minutes D. Set the specified ip address and the following 20 addresses as the primary source group address for communications with 20 seconds polling Question: 100 Transaction Rate Limiting: A. Cannot be used with SYN-Guard Page 22 of 58

B. Sets the total number of sessions a client can make to a server in a specified time period C. Limits the number of connections a client can establish to a server in a specified time period. D. Sets the total number of transactions that the ServerIron can process in a specified time period E. Sets the maximum number of transactions a user can make through the ServerIron in a specified time period Answer: E Question: 101 Transaction Rate Limiting A. Limits the total number of packets that can be sent through the ServerIron B. Limits the number of connections users can make through the ServerIron C. Limits the number of packets an individual user can send through the ServerIron D. Limits the number of connections an individual user can make through the ServerIron Question: 102 Connection Rate Limiting: A. Cannot be used with SYN-Guard B. Sets the total number of sessions a client can make to a server C. Limits the number of connections a client can establish to a server. D. Sets the total number of connections that the ServerIron can process E. Sets the total number of connections a user can make through the ServerIron Answer: D Question: 103 The output in Figure 2 below was produced by the following "show" command ServerIron (config)# show?. Client ->Server =26753 Server->Client =24817 Drops =4 Aged =38 Fw_drops =0 Rev_drops =0 FIN_or_RST =8429 old_conn =0 Disable_drop =0 Exceed_drop =0 Stale_drop =14 Unsuccessful =0 Figure 2 A. show server real B. show server sessions C. show server traffic D. show server stats Question: 104 Exhibit: Page 23 of 58

The "show server traffic" command displays the current activity on the Company server. Which of the following shows the number of incomplete connections A. Drops B. Stale Drops C. Fw drops D. TCP SYN-DEF RST Answer: D Question: 105 SYN-Guard A. Allows the ServerIron to complete the 3 way handshake B. Configures the ServerIron to establish a time out period for completion of the 3 way handshake C. Completes the 3 way hand shake for the server before initializing the connection to the server. D. Sends the 3 way handshake to the server and waits for the 'ack' to complete the 3 way handshake Question: 106 The passive health check is done: A. After each PING B. According to the configured time values C. When there is a status change from the server D. When the Reassign-Threshold is incremented Question: 107 A Port Profile is a set of attributes that defines a TCP/UDP port. Which of the following are valid Port Profile Attributes? A. l4-healthck B. Keepalive interval and retries C. TCP or UDP age D. Keepalive state, C, D Question: 108 disabling layer 4 health checks will automatically disable layer 7 health checks Page 24 of 58

Question: 109 What is the command syntax for setting up a layer 7 heathcheck for HTTP 1.1? A. port http url "GET /www.abc.com HTTP1.1\r\n\r\n" B. port url http "http 1.1/" C. port http url "GET / HTTP/1.0\r\nHost: www.domain1.com\r\n\r\n" D. port http url "GET / HTTP/1.0\r\ E. port http url "GET / HTTP/1.1\r\nHost: www.domain1.com\r\n\r\n" Answer: E Question: 110 Each Matching List must have a name Question: 111 Port profiles are used to define: A. Port types B. Status of ports C. Well known ports D. HTTP health checks Question: 112 When using a scripted health check, the default health check is disabled. Question: 113 A scripted health check can only contain searches for: A. ASCII content B. Status codes C. Status codes and ASCII content D. Status codes, ASCII content and keepalives Question: 114 A UDP application is considered down if the server returns: Page 25 of 58

A. No packet B. A garbage packet C. An UDP probe packet D. An ICMP unreachable packet Answer: D Question: 115 An HTTP health check can return: A. A keepalive B. Status code C. Content verification D. A value to increment the Reassign-Threshold, C Question: 116 On the ServerIrons 400/800, the Health Checks are performed by what section of the hardware? A. The Management processor B. The Barrel processors C. The IPC processors D. WSM processor Question: 117 What will be the corresponding Virtual MAC Address belonging to a configured VIP 175.30.15.10 (AF:1E:0F:0A) A. VMACs have to be manually configured B. AF:1E:0F:0A:FF:FF C. 02:0C:DB:1E:0F:0A D. 02:0C:AF:1E:0F:0A Question: 118 The Foundry ServerIron can perform Layer 7 health checks on the following TCP applications (select all that applies)? A. FTP (port 21) B. POP3 (port 110) C. LDAP (port 389) D. SNMP, B, C Question: 119 A customer HTTP connection requires a persistence timer of 3 hours. How can this be achieved? A. ServerIron(config)#server tcp-age 180 B. ServerIron(config)# server port 80 Page 26 of 58

ServerIron(config-port-http)# port tcp ServerIron(config-port-http)# server tcp-age 180 C. ServerIron(config)#server tcp-age 60 ServerIron(config)#server clock-scale 3 D. ServerIron(config)#server clock-scale 3 Question: 120 If a string that meets the selection criteria is a subset of another: A. The longer string takes precedence B. The shorter string takes precedence C. The string that is read last takes precedence D. The string that is read first takes precedence Question: 121 Which of the following Health Check types are performed at Layer 7? A. Arp Request B. TCP C. HTTP D. IMAP4 E. UDP F. LDAP G. MMS H. RSTP, D, F, G Question: 122 An active health check is done: A. At each user request B. According to the configured time values C. When the Reassign-Threshold is exceeded D. When there is a status change from the server Question: 123 A Matching List can contain: A. Log B. URL C. Down simple D. Status codes E. Up Compound, C, E Question: 124 What must be done before a Health-Check Policy will take effect? Page 27 of 58

A. The Health-Check Policy must be bound to the VIP B. The Health-Check Policy intervals and reset must be define C. The Health-Check Policy must be attached to an application port on a real server D. The Health-Check Policy must be configured to use 3-way handshaking Question: 125 Server port 8080 tcp keepalive 30 2 server port 9146 no-fast-bringup tcp keepalive 30 2 server port 9148 no-fast bringup tcp keepalive 30 2 What function does the "no-fast bringup" perform in the above configuration? A. Turns off the associated port B. Prevents port flapping C. Enables tcp keepalive on the associated port D. Allows the ServerIron to gradually receive connections Question: 126 What is the default TCP age for a TCP session on the ServerIron? A. 60 minutes B. 30 minutes C. 60 seconds D. 30 seconds Question: 127 The ServerIron Chassis supports redundant management modules. This creates a requirement that the software between the active and standby management modules is synced.. Which of the following file(s) are synced-up at predetermine intervals? A. Running-config B. Boot code C. Start-up Config-File D. Flash code, C, D Question: 128 To define how requests are distributed among multiple web cache servers within a cache-group, the following command is used: A. mask-hash <destination-ip-mask><source-ip-mask> B. hash-mask <destination-ip-mask><source-ip-mask> Page 28 of 58

C. hash-mask <server> < source-ip-mask> <destination-ip-mask> D. mask <source-ip-mask> <destination-ip-mask> Question: 129 Which of the following are features of the Web Switching Management Module used to power the ServerIron 100, 400, and 800 series? A. Management Processor LEDs B. Web Switching Management CPU LEDs C. Network Interface RJ45 D. Serial Port DB9, B, D Question: 130 What command is used to bind realserver1 and realserver2 under VIP1 for the http port? A. Bind http realserver1 realserver2 B. Bind realserver1 http realserver2 http C. Bind http realserver1 http realserver2 http D. Bind realserver1 realserver2 http Question: 131 What is the command to enabled Layer 4 Switching on the ServerIron Ironcore Chassis starting with release 8.1R? A. ip l4-policy 1 cache tcp 0 global B. rconsole 1 1 ip policy 1 cache tcp 0 global C. ip policy 1 cache tcp 0 global D. l4 switching is enable by default Question: 132 Transparent VIP turns off load balancing a VIP because it requires owning the VIP address. Question: 133 When setting up Symmetric SLB, what must be configured to ensure that sessions on the active ServerIron failover to the backup ServerIron in the event that the active ServerIron fails. A. IP Synchronization B. Application Synchronization C. Session Synchronization D. Port Synchronization Page 29 of 58

Question: 134 What is the default predictor for load balancing on Foundry Networks ServerIron product family A. Round Robin B. Least Connections C. Weighted D. Best server predictor Question: 135 Which of the following is an alternative to Hot Standby Redundancy? A. Symmetric Server Load Balancing B. Global Server Load Balancing C. Server Load Balancing D. System Server Load Balancing Question: 136 In order to configure the ServerIron to remove any entry from its session table if the connection remains incomplete for more than 5 seconds, what command would be use? A. server syn-def drop 5 B. server syn-def 5 C. syn-def server 5 D. syn-def server def 5 Question: 137 On the ServerIron 450 running release 9.x, what is the total number of sticky sessions supported A. 3 Million B. 2 Million C. 1 Million D. 500 Thousand E. Unlimited Answer: E Question: 138 What is the recommended low priority setting and high priority setting when configuring Symmetric SLB? A. Low = 0, High = 255 B. Low = 1, High = 254 C. Low = -1, High = 255 D. Low = -1, High = 254 Question: 139 Page 30 of 58

For any application port, the "sticky" command is used to: A. bind real servers B. configure persistence C. create sessions D. cookie switching Question: 140 The SI Layer2 ARP request is disabled for remote server configurations Question: 141 Stateless SLB optimization is supported on the following TCP or UDP well known ports. Choose all that applies. A. 80 (HTTP) B. 49 (TACACS) C. 92 (NPP) D. 21 (FTP) E. 107 (rtelnet), B, D Question: 142 What feature is used to configure multiple ServerIrons to load Balance the same VIP? A. Stateless VIPs B. Transparent VIPs C. Unlimited VIPs D. Sticky VIPs Question: 143 By default, the ServerIron translates the application port number requested by the client into the application port number you specify on the virtual server when you bind it to the real server. Question: 144 How does the ServerIron measure response time in Direct Server Return configurations? A. The ServerIron uses the reply traffic to measure the response time. B. The ServerIron uses the Health Check and the reply traffic and applies the smooth factor to get the average Page 31 of 58

C. The ServerIron uses the Server Response Time Weights parameter to measure response time. D. The ServerIron uses the Health Check responses to measure response time. Answer: D Question: 145 When you apply the application grouping parameter for a port and the VIP that has a Load Balancing Predictor defined, Which one takes precedence? A. The application grouping parameter B. The Load balancing Predictor C. The setting that was configured first D. Only the servers that is also sticky Question: 146 Using router ports with Hot-Standby: A. Stops spanning tree loops B. Enables multiple routers to be connected to the ServerIron C. Forces the packet to bypass the ServerIron and go directly to the router D. Can be used to force the standbay ServerIron to be active when a router port fails Answer: D Question: 147 What is it called when the ServerIron does not process every TCP or UDP packet in a given session, instead it uses information gather during the setup of the session to forward packets.? A. TCP or UDP Fast Aging B. Fast-path SLB processing C. Connection Logging D. Smooth Factor Question: 148 Setting the QOS policy to "CACHE" does what? A. Disables Transparent Cache Switching (TCS) B. Enables Transparent Cache Switching (TCS) C. Sets the QoS cache for low priority traffic D. Enabled Firewall Load Balancing E. Disables Firewall Load Balancing Question: 149 The WSM6 module A. Balances traffic to and from the management processor B. Manages the SI850 and SI450 C. Has 6 management processors Page 32 of 58

D. Can be configured as a WSM-100 Question: 150 Which Features are NOT supported in 9.1R? ( Select all that apply ) A. VRRP B. FSRP C. RIP D. OSPF E. BGP F. VRRP-E, E Question: 151 The ServerIron considers a port to be a UDP port unless you configure it as a TCP port. Question: 152 The ServerIron in a non-routed environment always translates the MAC address in response from a real server into the MAC address of the virtual IP address before sending the response to the client. Question: 153 What is the number of sessions that a ServerIron with 32MB of memory installed can support? A. 500.000 B. 160,000 C. 1,000,000 D. 1,160,000 Question: 154 Exhibit: Page 33 of 58

In the exhibit, what commands would have to be entered in order to enable the configuration of VRRP-Extended? A. boot system flash primary B. boot system flash secondary C. boot system flash secondary; wsm boot secondary D. boot system flash primary; wsm boot secondary E. reload F. erase start; reload Question: 155 Configuring a port to be Stateless is useful when? A. You want to reserve session table resources. B. You don't want to use memory storing statistics C. You have configured the VIP to be transparent D. When the application port is not a well know port, C Page 34 of 58

Question: 156 "Server slow start applies to individual TCP application ports that have just been activated on a real server. Question: 157 If the ServerIron is attached to multiple routers or to a single router configured for VRRP, FSRP, or HSRP, you must identify the ports on the ServerIron that are attached to the router(s). Why? A. Explicitly identifying the ports enables the ServerIron to handle the Layer 2 traffic correctly. B. Explicitly identifying the ports enables the ServerIron to handle the Layer 4 traffic correctly. C. Explicitly identifying the ports enables the ServerIron to handle the Layer 3 traffic correctly. D. Explicitly identifying the ports enables the ServerIron to handle the VRRP, FSRP, or HSRP Failover correctly. Question: 158 Which devices support ServerIron Link Balancer? A. ServerIron XL B. ServerIron 100 C. ServerIron 400 D. ServerIron 800 E. ServerIron 450 F. ServerIron 850 G. ServerIron GT-E Question: 159 Which HA feature is not supported in Router Code A. Active-Active B. Hot-Stby C. Active-Stby D. Active-Passive Question: 160 With the proxy server cache load balancing featured configured, what is required to ensure clients whose browsers with Proxy IP configured are served transparently? A. The ServerIron performs tranparent TCS, using the normal hash mechanism to map the request B. A VIP must be configured with the same IP address as the proxy C. You must identify the ports as UDP so the appropriate health checks are used D. Requires clients to reconfigure their web browsers to point to a proxy server Page 35 of 58

Question: 161 What is the CLI command to display the synchronization settings for the Active Redundant and the Standby Redundant Management Modules? A. standby B. sync-standby C. sync-sync D. standby - Sync Question: 162 Which of the following are selectable types of Quality of Service (QoS)? A. Layer 4 session packet-based B. Layer 2 Flow control (802.3x) C. Layer 3 802.1p/802.1q D. Layer 2 Packet-based priority (Policy), B, D Question: 163 Exhibit: Page 36 of 58

In the exhibit what are the possible types of management module that is being used? A. WSM4 B. WSM6 C. WSM4-100 D. WSM6-1 E. WSM6-2 F. VM, B Question: 164 When using the weighted percentage method (Predictor), you must configure real servers and? A. The Global Servers B. The Web Servers C. The Virtual Server D. The Backup Servers Page 37 of 58

Question: 165 The output of the "show server real" displays information about the real servers. The "Ms" field contains the value of the Master Port State, and only applies to track ports and to ports to which you have bound other TCP/UDP ports.. The possible values are: A. 3 -Test B. 5-Unbnd C. 1-Enable D. 3-TestUp E. 6-Active F. 2 - Failed, C, E, F Question: 166 The ServerIron that is the GSLB Controller can also be used to balance web servers. Question: 167 The command show gslb policy will always display the: A. Default policy B. Currently configured policy C. Default policy and currently configured policy D. The default policy and currently configured policy with selection percentages Question: 168 The Global Server Load Balance (GSLB) serveriron uses the GSLB protocol to learn the following (select all that applies)? A. Available sessions of the site ServerIrons B. Firewall server real name C. Session table statistics D. Round-Trip-Time, C, D Question: 169 Route Health Injection A. Sets the routing to the host by listing them by health in the router table B. Checks for the health of the server by using the router C. Determines the route to the nearest server by using the host address in the router D. Allows the ServerIron to insert the health of the nearest server into the router Question: 170 Page 38 of 58

When using the 'debug filter' you would like to filter for a TCP SYN or a TCP RST, in order to do that you would write: A. (debug-filter-spec-1)#tcp fin or reset B. (debug-filter-spec-1)#tcp fin (debug-filter-spec-2)#tcp reset C. (debug-filter-spec-1)#tcp fin (debug-filter-spec-1)#tcp reset (debug-filter)#apply "tcp fin or reset" D. (debug-filter-spec-1)#tcp fin (debug-filter-spec-1)#tcp reset (debug-filter)#apply "1 or 2" E. (debug-filter-spec-1)#tcp fin (debug-filter-spec-2)#tcp reset (debug-filter)#apply "1 or 2" Answer: E Question: 171 To temporally disqualify a GSLB site from being selected, you would configure the: A. Least Response selection B. GSLB Administrative Preference C. Site ServerIrons?available session capacity D. Site ServerIrons?administrative preference Answer: D Question: 172 Repeated executions of 'show server real' displays the real server status as 'failed'/'active'. This problem could be caused by the failure of which health check: A. Layer 2 B. Layer 3 C. Layer 4 D. Layer 5 E. Layer 7 Answer: E Question: 173 A UDP health check upon initialization can include: A. ARP B. PING C. SYN D. SYN-ACK E. RST F. Garbage packet (meaningless data), B, F Question: 174 A TCP health check upon initialization can include: Page 39 of 58

A. ARP B. PING C. SYN D. SYN-ACK E. RST F. Garbage packet, B, C, D, E Question: 175 What is the default load balancing method used for Firewall load balancing on ServerIron Stackable products? A. Hashing B. Round robin C. Session based sticky D. Stateful Question: 176 The ServerIron can delete a cookie that it set. Question: 177 When setting the server up to be in groups, the servers must be: A. In only one group B. At least two groups C. In a range of groups D. Defined as being on a beginning group and an ending group Question: 178 The feature that allows the ServerIron to forward only packets associated with an established connection to the server is called Syn Defense. Question: 179 In which case will the ServerIron insert a cookie? A. There is no cookie header B. The cookie value is out of range C. The server indicated by the cookie is not available D. The cookie value exists but points to an incorrect server E. The cookie name is not the name specified by the 'port http cookie-name' Page 40 of 58

, B, C, E Question: 180 Cooking hashing guarantees session persistence Question: 181 When you apply the application grouping parameter for a port and the VIP that has a Load Balancing Predictor defined, Which one takes precedence? A. The application grouping parameter B. The Load balancing Predictor C. The setting that was configured first D. Only the servers that is also sticky Question: 182 Which of the following is an alternative to Hot Standby Redundancy? A. Symmetric Server Load Balancing B. Global Server Load Balancing C. Server Load Balancing D. System Server Load Balancing Question: 183 How does the ServerIron measure response time in Direct Server Return configurations? A. The ServerIron uses the reply traffic to measure the response time. B. The ServerIron uses the Health Check and the reply traffic and applies the smooth factor to get the average C. The ServerIron uses the Server Response Time Weights parameter to measure response time. D. The ServerIron uses the Health Check responses to measure response time. Answer: D Question: 184 How often does the Serveriron ARP for a real server after it is up by default? A. It does not arp for the server once it is up. B. Every 5 mins C. Every 2 mins D. Every 20 seconds E. Every 2 seconds Answer: D Page 41 of 58

Question: 185 When using the weighted percentage method (Predictor), you must configure real servers and? A. The Global Servers B. The Web Servers C. The Virtual Server D. The Backup Servers Question: 186 The ServerIron in a non-routed environment always translates the MAC address in response from a real server into the MAC address of the virtual IP address before sending the response to the client. Question: 187 Which of the following are features of the Web Switching Management Module used to power the ServerIron 100, 400, and 800 series? A. Management Processor LEDs B. Web Switching Management CPU LEDs C. Network Interface RJ45 D. Serial Port DB9, B, D Question: 188 What feature is used to configure multiple ServerIrons to load Balance the same VIP? A. Stateless VIPs B. Transparent VIPs C. Unlimited VIPs D. Sticky VIPs Question: 189 Configuring a port to be Stateless is useful when? A. You want to reserve session table resources. B. You don't want to use memory storing statistics C. You have configured the VIP to be transparent D. When the application port is not a well know port, C Question: 190 To define how requests are distributed among multiple web cache servers within a cache-group, the following command is used: Page 42 of 58

A. mask-hash <destination-ip-mask><source-ip-mask> B. hash-mask <destination-ip-mask><source-ip-mask> C. hash-mask <server> < source-ip-mask> <destination-ip-mask> D. mask <source-ip-mask> <destination-ip-mask> Question: 191 Which devices support ServerIron Link Balancer? A. ServerIron XL B. ServerIron 100 C. ServerIron 400 D. ServerIron 800 E. ServerIron 450 F. ServerIron 850 G. ServerIron GT-E Question: 192 What is the command to enabled Layer 4 Switching on the ServerIron Ironcore Chassis starting with release 8.1R? A. ip l4-policy 1 cache tcp 0 global B. rconsole 1 1 ip policy 1 cache tcp 0 global C. ip policy 1 cache tcp 0 global D. l4 switching is enable by default Question: 193 What is the recommended low priority setting and high priority setting when configuring Symmetric SLB? A. Low = 0, High = 255 B. Low = 1, High = 254 C. Low = -1, High = 255 D. Low = -1, High = 254 Question: 194 What command is used to bind realserver1 and realserver2 under VIP1 for the http port? A. Bind http realserver1 realserver2 B. Bind realserver1 http realserver2 http C. Bind http realserver1 http realserver2 http D. Bind realserver1 realserver2 http Question: 195 Page 43 of 58

"Server slow start applies to individual TCP application ports that have just been activated on a real server. Question: 196 The best practice method to configure SSL Layer7 switching is A. URL switching B. Cookie switching C. Session ID switching D. Round robin Question: 197 The ServerIron Chassis supports redundant management modules. This creates a requirement that the software between the active and standby management modules is synced.. Which of the following file(s) are synced-up at predetermine intervals? A. Running-config B. Boot code C. Start-up Config-File D. Flash code, C, D Question: 198 What is it called when the ServerIron does not process every TCP or UDP packet in a given session, instead it uses information gather during the setup of the session to forward packets.? A. TCP or UDP Fast Aging B. Fast-path SLB processing C. Connection Logging D. Smooth Factor Question: 199 If the ServerIron is attached to multiple routers or to a single router configured for VRRP, FSRP, or HSRP, you must identify the ports on the ServerIron that are attached to the router(s). Why? A. Explicitly identifying the ports enables the ServerIron to handle the Layer 2 traffic correctly. B. Explicitly identifying the ports enables the ServerIron to handle the Layer 4 traffic correctly. C. Explicitly identifying the ports enables the ServerIron to handle the Layer 3 traffic correctly. D. Explicitly identifying the ports enables the ServerIron to handle the VRRP, FSRP, or HSRP Failover correctly. Question: 200 The ServerIron XL supports: Page 44 of 58

A. ip forwarding B. RIP C. OSPF D. IS-IS E. BGP4, B Question: 201 The ServerIron considers a port to be a UDP port unless you configure it as a TCP port. Question: 202 The output of the "show server real" displays information about the real servers. The "Ms" field contains the value of the Master Port State, and only applies to track ports and to ports to which you have bound other TCP/UDP ports.. The possible values are: A. 3-Test B. 5-Unbnd C. 1-Enable D. 3-TestUp E. 6-Active F. 2 - Failed, C, E, F Question: 203 For any application port, the "sticky" command is used to: A. bind real servers B. configure persistence C. create sessions D. cookie switching Question: 204 Transparent VIP turns off load balancing a VIP because it requires owning the VIP address. Question: 205 What is the default TCP age for a TCP session on the ServerIron? A. 60 minutes B. 30 minutes C. 60 seconds Page 45 of 58

D. 30 seconds Question: 206 Using router ports with Hot-Standby: A. Stops spanning tree loops B. Enables multiple routers to be connected to the ServerIron C. Forces the packet to bypass the ServerIron and go directly to the router D. Can be used to force the standbay ServerIron to be active when a router port fails Answer: D Question: 207 On the ServerIron 450 running release 9.x, what is the total number of sticky sessions supported A. 3 Million B. 2 Million C. 1 Million D. 500 Thousand E. Unlimited Answer: E Question: 208 Setting the QOS policy to "CACHE" does what? A. Disables Transparent Cache Switching (TCS) B. Enables Transparent Cache Switching (TCS) C. Sets the QoS cache for low priority traffic D. Enabled Firewall Load Balancing E. Disables Firewall Load Balancing Question: 209 The WSM6 module A. Balances traffic to and from the management processor B. Manages the SI850 and SI450 C. Has 6 management processors D. Can be configured as a WSM-100 Question: 210 The ServerIron uses two kinds of slow-start mechanisms, what are they? A. Sever slow start B. Switch slow start C. Port slow start D. IP slow start, C Page 46 of 58