Courseiva

F5-CTS-LTM BIG-IP Local Traffic Manager Practice Question

Which health monitor type should be used when you need to verify that a web server is not only responding to TCP connections but also returning the correct content for a specific page?

⚠ Common exam trap

Candidates often choose a TCP monitor because it is simpler, failing to realize that a TCP monitor only checks for an open port, not application-layer health.

Answer choices

Why each option matters

Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.

Correct answer & explanation

✓

HTTP monitor with 'send' and 'receive' strings.

An HTTP or HTTPS monitor is required to validate application-layer content. Simple TCP monitors only verify that the port is open and listening; they cannot confirm if the web server is actually serving pages or returning errors. By configuring an HTTP monitor with a 'send' and 'receive' string, the BIG-IP can ensure the application is functioning correctly, not just the network stack.

Answer analysis

Option-by-option breakdown

For each option: why learners choose it and why it is or isn't the right answer here.

  • ✗

    TCP Half-Open monitor.

    Why it's wrong here

    A TCP half-open monitor performs a SYN-only check to see if the server responds with a SYN-ACK. It is faster than a full TCP connect monitor but does not perform any application-level verification, making it insufficient for validating that web pages are actually being served correctly.

  • ✗

    ICMP monitor.

    Why it's wrong here

    ICMP monitors only verify network reachability using echo requests. A server might respond to ICMP pings while the web service is completely crashed or misconfigured. This monitor type is completely blind to the state of the web application service itself and should never be used for application health.

  • ✓

    HTTP monitor with 'send' and 'receive' strings.

    Why this is correct

    An HTTP monitor allows the LTM to send a specific HTTP request and wait for a specific response string. This verifies that the web server is correctly processing requests, handling the application logic, and returning the expected data, providing a much higher level of confidence than transport-layer monitors.

  • ✗

    SNMP DCA monitor.

    Why it's wrong here

    SNMP monitors rely on external agents to report server status via SNMP traps or queries. While useful for monitoring CPU or memory, they are not suited for verifying that a web server is returning the correct content to an end-user, as they lack the ability to simulate client requests.

Visual reference

Client Server SYN (seq=100) SYN-ACK (seq=200, ack=101) ACK (ack=201) Connection established — data transfer begins

About these practice questions

Courseiva writes every F5-CTS-LTM question from scratch — 119 in total, each with an explanation and a wrong-answer breakdown. None are copied from real exams or dumps. Learn why practice questions differ from exam dumps →

How Courseiva writes practice questions · Editorial policy

JA

Written and reviewed by Johnson Ajibi, MSc IT Security

Senior Network & Security Engineer · founder of Courseiva

Last reviewed September 2026 · checked against the official F5 exam blueprint

This F5-CTS-LTM practice question is part of Courseiva's free F5 certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the F5-CTS-LTM exam.