F5
101 · Question #3
101 Question #3: Real Exam Question with Answer & Explanation
The correct answer is A: SNATs are enabled on all VLANs, by default.. On F5 BIG-IP, SNATs apply to all VLANs by default and can be configured directly within a virtual server definition to enable source address translation for that virtual server's traffic.
Question
Which two statements are true about SNATs. (Choose two.)
Options
- ASNATs are enabled on all VLANs, by default.
- BSNATs can be configured within a Profile definition.
- CSNATs can be configured within a Virtual Server definition.
- DSNAT's are enabled only on the VLAN where origin traffic arrives, by default
Explanation
On F5 BIG-IP, SNATs apply to all VLANs by default and can be configured directly within a virtual server definition to enable source address translation for that virtual server's traffic.
Common mistakes.
- B. SNATs are independent objects on F5 BIG-IP and are not configured within Profile definitions; profiles govern connection behavior, protocol handling, and persistence, not address translation.
- D. SNATs are enabled on all VLANs by default, not restricted to only the VLAN where origin traffic arrives; VLAN restriction requires explicit administrator configuration.
Concept tested. F5 BIG-IP SNAT default VLAN scope and virtual server integration
Reference. https://techdocs.f5.com/en-us/bigip-15-1-0/big-ip-local-traffic-management-basics/snat.html
Community Discussion
No community discussion yet for this question.