8/24/26, 4:33
PM
WAS01-03 WAF-as-a-Service - Foundation
100% Correct 38
Incorrect 00
1 of 38
Term
Waas can be configured via the web interface or REST API.
Give this one a try later!
WhatsApp
*Email*
*Slack* status.barracuda.com
Signal
TRUE false
Don't know?
2 of 38
https://quizlet.com/938691016/test? 1/34
answerTermSides=6&promptTermSides=6&questionCount=38&questionTypes=4&showImages=true
,8/24/26, 4:33
PM
Term
Where can you define the number of files that can be uploaded?
Give this one a try later!
... Virus Scanning.
status.barracuda.com
*... Parameter Protection.*
... Header allow / deny rules.
Virus Scanning
URL Protection
Parameter Protection (1,2)
*Parameter Protection*
URL Protection (2,3)
Virus Scanning
App Profiles (1,2,3)
(F)
Don't know?
3 of 38
Term
The Barracuda Application Protection Advanced Plan includes AI and
machine learning-based features.
Give this one a try later!
status.barracuda.com true
https://quizlet.com/938691016/test? 2/34
answerTermSides=6&promptTermSides=6&questionCount=38&questionTypes=4&showImages=true
,8/24/26, 4:33
PM
App Profiles
*Endpoints*
FALSE
Servers
Resources
Don't know?
4 of 38
Term
What are the prerequisites if you want to use Let's Encrypt?
Give this one a try later!
False, all attacks are blocked even if block mode is not enabled.
*True, but cookie security is enforced even if the application is not in block
mode. (I f the cookie security component is enabled)*
True, attacks are only blocked if WaaS is set to block.
There must be an endpoint on port 80. (1,2,3)
There must be an endpoint on port 81.
All domains have to point to the same endpoint address. (1,3)
A Let's Encrypt account must be created beforehand. (1,2)
Datacenter IPs in the IP Address Geolocation component must not be
blocked. (2)
It prevents attackers from gaining information about the web application
that can be used in a subsequent attack.
(F)
By creating a parameter profile for said parameter in App Profiles and denying the
metacharacter.
*Metacharacters for sp ecific parameters cannot be denied.*
https://quizlet.com/938691016/test? 3/34
answerTermSides=6&promptTermSides=6&questionCount=38&questionTypes=4&showImages=true
, 8/24/26, 4:33
PM
By denying the parameter in the Parameter Protection component.
To automatically extend the certificates of an application
*To p inpoint a sp ecific feature to only a p art of the web
application.* To extend the WaaS licenses for a certain period.
Don't know?
5 of 38
Term
WaaS components only validate traffic if they have been added
to the GUI.
Give this one a try later!
WhatsApp
*Email*
*Slack*
Signal
TRUE
False
False, all attacks are blocked even if block mode is not enabled.
*True, but cookie security is enforced even if the application is not in block mode.
(I f the cookie security component is enabled)*
https://quizlet.com/938691016/test? 4/34
answerTermSides=6&promptTermSides=6&questionCount=38&questionTypes=4&showImages=true
PM
WAS01-03 WAF-as-a-Service - Foundation
100% Correct 38
Incorrect 00
1 of 38
Term
Waas can be configured via the web interface or REST API.
Give this one a try later!
*Email*
*Slack* status.barracuda.com
Signal
TRUE false
Don't know?
2 of 38
https://quizlet.com/938691016/test? 1/34
answerTermSides=6&promptTermSides=6&questionCount=38&questionTypes=4&showImages=true
,8/24/26, 4:33
PM
Term
Where can you define the number of files that can be uploaded?
Give this one a try later!
... Virus Scanning.
status.barracuda.com
*... Parameter Protection.*
... Header allow / deny rules.
Virus Scanning
URL Protection
Parameter Protection (1,2)
*Parameter Protection*
URL Protection (2,3)
Virus Scanning
App Profiles (1,2,3)
(F)
Don't know?
3 of 38
Term
The Barracuda Application Protection Advanced Plan includes AI and
machine learning-based features.
Give this one a try later!
status.barracuda.com true
https://quizlet.com/938691016/test? 2/34
answerTermSides=6&promptTermSides=6&questionCount=38&questionTypes=4&showImages=true
,8/24/26, 4:33
PM
App Profiles
*Endpoints*
FALSE
Servers
Resources
Don't know?
4 of 38
Term
What are the prerequisites if you want to use Let's Encrypt?
Give this one a try later!
False, all attacks are blocked even if block mode is not enabled.
*True, but cookie security is enforced even if the application is not in block
mode. (I f the cookie security component is enabled)*
True, attacks are only blocked if WaaS is set to block.
There must be an endpoint on port 80. (1,2,3)
There must be an endpoint on port 81.
All domains have to point to the same endpoint address. (1,3)
A Let's Encrypt account must be created beforehand. (1,2)
Datacenter IPs in the IP Address Geolocation component must not be
blocked. (2)
It prevents attackers from gaining information about the web application
that can be used in a subsequent attack.
(F)
By creating a parameter profile for said parameter in App Profiles and denying the
metacharacter.
*Metacharacters for sp ecific parameters cannot be denied.*
https://quizlet.com/938691016/test? 3/34
answerTermSides=6&promptTermSides=6&questionCount=38&questionTypes=4&showImages=true
, 8/24/26, 4:33
PM
By denying the parameter in the Parameter Protection component.
To automatically extend the certificates of an application
*To p inpoint a sp ecific feature to only a p art of the web
application.* To extend the WaaS licenses for a certain period.
Don't know?
5 of 38
Term
WaaS components only validate traffic if they have been added
to the GUI.
Give this one a try later!
*Email*
*Slack*
Signal
TRUE
False
False, all attacks are blocked even if block mode is not enabled.
*True, but cookie security is enforced even if the application is not in block mode.
(I f the cookie security component is enabled)*
https://quizlet.com/938691016/test? 4/34
answerTermSides=6&promptTermSides=6&questionCount=38&questionTypes=4&showImages=true