302 · F5-CTS, BIG-IP DNS

BIG-IP DNS Specialist

For engineers preparing for the 302 exam. Deliver intelligent DNS and Global Server Load Balancing across multiple data centres, and understand the protocol underneath it.

More of this exam is DNS than most candidates expect. Hierarchy and roles, zone transfers, DNSSEC and TSIG, DNS Express and DNS Cache, dig and nslookup, alongside GSLB pool and virtual server selection, topology load balancing, iQuery and sync groups.

Waitlist members get first access and launch pricing.
Full course €499. Covers all four sections of the 302 blueprint.

Join Wait List
 

Status · In build

Waitlist members get first access and launch pricing. Pricing €499 > Full Course

Created by Graham Mattingley. Fourteen years F5-certified. Banking, aviation, government, and F5 instructor.

Course overview

302 identifies engineers who can deliver scalable intelligent DNS and Global Server Load Balancing across multiple data centres. It expects you to design the solution, implement it, prove it works, and keep it running.

Worth knowing before you start: a significant part of this exam is DNS itself rather than the BIG-IP product. Protocol hierarchy and roles, zone transfers, DNSSEC and TSIG key handling, and using dig and nslookup to verify behaviour all appear in the blueprint. Candidates who treat 302 as a GUI exam tend to be surprised.

Aligns directly with the official 302 blueprint, covering all fourteen objectives across four sections.

What's included

βœ“Instructor-led, self-paced video training aligned directly to the 302 blueprint
βœ“DNS protocol grounding: hierarchy, roles, record types, resolution and zone transfers
βœ“GSLB pool and virtual server selection explained tier by tier
βœ“Topology load balancing, DNS Express, DNS Cache, DNS64 and DNSSEC in practice
βœ“iQuery, sync groups and the network conditions GSLB actually needs
βœ“Troubleshooting with dig, nslookup, tcpdump and openssl
βœ“Private course community access for discussion and 302 exam support

Join the 302 Wait List

Receive monthlyΒ build updates, preview content, and early access notifications.

What Will You Be Able To Do?

302 tests whether you can build DNS infrastructure that stays correct across data centres, and whether you understand the protocol well enough to know when the box is not the problem.

After completing this course, you'll be able to:

βœ… Explain DNS properly - hierarchy, roles, resolution, record types, and where the protocol's limits actually bite

βœ… Choose a deployment model from requirements - and justify DNS Express, Zone Runner, DNS Cache, DNS64 or DNSSEC on the facts

βœ… Configure GSLB with intent - two tiers of pool selection, three tiers of virtual server selection, and the load balancing method that fits

βœ… Use topology load balancing - and predict what it costs you in performance

βœ… Get iQuery working and keep it working - self IPs, routes, ports, NTP across sync group members

βœ… Diagnose with the right tool - dig, nslookup, tcpdump and openssl, and know which one answers your question

βœ… Stop objects flapping - by finding the monitor or prober cause rather than restarting things

βœ… Back up and restore correctly - including the master encryption keys for TSIG and DNSSEC, which are easy to lose and hard to recover

You will leave this course able to design, implement and defend a BIG-IP DNS deployment, and to explain the protocol behaviour underneath it.

302 Course Curriculum

Private Community Included with the Course

Share a private community with other members of this course. Course community membership is permanent.

βœ… Ask questions and get practical advice from other course members on the same learning journey.

βœ… Share real-world scenarios, problems, and solutions.

Want Personalised Support?

Add a 1:1 Strategy Session. Get a private hour with Graham to:

βœ… Review your TMOS Administration study/knowledge gaps
βœ… Review specific areas of the blueprint that are blockers
βœ… Live question sessions to test exam readiness

Additional Cost: €100

Full Video Course

Presentations, F5 GUI and CLI demonstrations, DNS protocol grounding, GSLB tier walkthroughs, topology load balancing, DNS Express and DNS Cache configuration, and troubleshooting sessions, all aligned to the 302 blueprint.

Watch Every Configuration (GUI & TMSH)

Guided demonstrations covering listener configuration, GSLB pools and wide IPs, topology records, iQuery and sync group setup, DNS Express and DNS Cache, plus live troubleshooting with dig, nslookup and tcpdump.

Lesson Knowledge Checks

Targeted assessments after each module to reinforce key concepts and ensure you are progressing toward 302 exam readiness. Protocol questions are included deliberately, because that is where most candidates lose marks.

302 Course FAQs

Your instructor

I don't teach exam shortcuts. I teach how TMOS actually behaves under production traffic, and how to make confident decisions when it's 2 AM and something's on fire.

Graham Mattingley

Graham Mattingley

CCIE since 2001 | F5 401 Certified Solution Expert | OWASP member

Thirty years in application development, twenty in application delivery, F5-certified for fourteen. I've deployed and secured F5 solutions for banking, aviation, and government systems across Europe, and taught this material face to face to the engineers who run it.

This is the operational knowledge I wish I'd had twenty years ago, distilled from production deployments you won't find in official training materials.

How this course is delivered

  • Instructor-led, structured video lessons aligned directly to the fourteen 302 blueprint objectives

  • DNS protocol grounding before any BIG-IP configuration, because the exam assumes it

  • Step-by-step configuration walkthroughs using the F5 GUI and TMSH

  • GSLB selection logic worked through tier by tier with traffic examples

  • Live troubleshooting with dig, nslookup, tcpdump and openssl

  • Self-paced access, allowing you to study around professional commitments

  • Design scenarios covering multi-data-centre deployments and sync group behaviour

Prerequisites & Requirements

F5 Certified Administrator, BIG-IP (F5-CA) is required before sitting 302. Since May 2025 that is earned by passing F5CAB1 to F5CAB5.

DNS knowledge matters more here than BIG-IP knowledge. Recommended:

  • Understanding of DNS hierarchy, roles and common record types

  • Familiarity with resolution behaviour, caching and TTLs

  • Comfort with dig or nslookup at the command line

  • Working knowledge of BIG-IP virtual servers, pools and monitors

Access to a BIG-IP lab environment is recommended for hands-on practice. However, the course includes lifetime access to all demonstrations, allowing you to revisit configuration walkthroughs as needed.

Lab Access Info

What happensΒ next?

  • Join the waiting list to be notified when enrolment opens

  • Receive monthly, blueprint-aligned TMOS administration scenarios and diagnostic insights while the course is in development

  • Get early access and priority enrolment before the public launch

Join the Wait List