ExamGecko
Home Home / Citrix / 1Y0-341

Citrix 1Y0-341 Practice Test - Questions Answers, Page 4

Question list
Search
Search

List of questions

Search

Related questions











Which data populates the

Events Dashboard?

A.
Syslog messages
A.
Syslog messages
Answers
B.
SNMP trap messages
B.
SNMP trap messages
Answers
C.
API calls
C.
API calls
Answers
D.
AppFlow IPFIX records
D.
AppFlow IPFIX records
Answers
Suggested answer: D

Scenario: A Citrix Engineer is notified that improper requests are reacting the web application. While investigating, the engineer notices that the Citrix Web App Firewall policy has zero hits. What are two possible causes for this within the Citrix Web App Firewall policy? (Choose two.)

A.
The expression is incorrect.
A.
The expression is incorrect.
Answers
B.
It has been assigned an Advanced HTML profile.
B.
It has been assigned an Advanced HTML profile.
Answers
C.
It is NOT bound to the virtual server.
C.
It is NOT bound to the virtual server.
Answers
D.
It has been assigned the built-in APPFW_RESET profile.
D.
It has been assigned the built-in APPFW_RESET profile.
Answers
Suggested answer: A, C

Which feature of Learning should a Citrix Engineer configure to direct Citrix Web App Firewall to learn from specific sessions?

A.
Advanced policy expression filter
A.
Advanced policy expression filter
Answers
B.
Default policy expression filter
B.
Default policy expression filter
Answers
C.
Trusted Learning Clients list
C.
Trusted Learning Clients list
Answers
D.
Manage Content Types for Safe Commerce
D.
Manage Content Types for Safe Commerce
Answers
Suggested answer: C

Explanation:

Reference: https://docs.citrix.com/en-us/citrix-adc/current-release/application-firewall/profiles/learning.html

A Citrix Engineer has defined an HTTP Callout, hc_authorized_location, to return the value “Authorized” if client’s IP address is on a list of authorized external locations.

Which advanced expression should the engineer use in a policy for testing this condition?

A.
SYS.HTTP_CALLOUT(hc_authorized_location).IS_TRUE
A.
SYS.HTTP_CALLOUT(hc_authorized_location).IS_TRUE
Answers
B.
SYS.HTTP_CALLOUT(hc_authorized_location).EQ(“Authorized”)
B.
SYS.HTTP_CALLOUT(hc_authorized_location).EQ(“Authorized”)
Answers
C.
SYS.HTTP_CALLOUT(hc_authorized_location).IS_VALID
C.
SYS.HTTP_CALLOUT(hc_authorized_location).IS_VALID
Answers
D.
SYS.HTTP_CALLOUT(hc_authorized_location).EQUALS_ANY(“Authorized”)
D.
SYS.HTTP_CALLOUT(hc_authorized_location).EQUALS_ANY(“Authorized”)
Answers
Suggested answer: D

Scenario: A Citrix Engineer configured signature protections for Citrix Web App Firewall. Signature Auto-Update has been enabled. Upon reviewing the log files, the engineer notices that the auto update process has an error. In the settings for Signature Auto Update the engineer notices that the URL is blank.

Which URL should the engineer enter to restore the update process?

A.
https://s3.amazonaws.com/NSAppFwSignatures/SignaturesMapping.xml
A.
https://s3.amazonaws.com/NSAppFwSignatures/SignaturesMapping.xml
Answers
B.
https://download.citrix.com/NSAppFwSignatures/SignaturesMapping.xml
B.
https://download.citrix.com/NSAppFwSignatures/SignaturesMapping.xml
Answers
C.
https://www.citrix.com/NSAppFwSignatures/SignaturesMapping.xml
C.
https://www.citrix.com/NSAppFwSignatures/SignaturesMapping.xml
Answers
D.
https://citrix.azure.com/NSAppFwSignatures/SignaturesMapping.xml
D.
https://citrix.azure.com/NSAppFwSignatures/SignaturesMapping.xml
Answers
Suggested answer: A

Explanation:

Reference: https://support.citrix.com/article/CTX138858

Scenario: A Citrix Engineer is reviewing the Citrix Web App Firewall log files using the GUI. Upon further analysis, the engineer notices that legitimate application traffic is being blocked.

What can the engineer do to allow the traffic to pass through while maintaining security?

A.
Note the protection blocking the traffic in the log entry. Edit the profile and deselect the Block action for the protection.
A.
Note the protection blocking the traffic in the log entry. Edit the profile and deselect the Block action for the protection.
Answers
B.
Select the check box in the log entry. Choose Dismiss to allow the traffic to pass through from the Action menu.
B.
Select the check box in the log entry. Choose Dismiss to allow the traffic to pass through from the Action menu.
Answers
C.
Note the protection blocking the traffic in the log entry. Create a new profile and policy and bind it with a larger priority number.
C.
Note the protection blocking the traffic in the log entry. Create a new profile and policy and bind it with a larger priority number.
Answers
D.
Select the check box in the log entry. Choose Edit & Deploy to create a relaxation rule from the Action menu.
D.
Select the check box in the log entry. Choose Edit & Deploy to create a relaxation rule from the Action menu.
Answers
Suggested answer: A

Scenario: A Citrix Engineer has enabled the IP Reputation feature. The engineer wants to protect a critical web application from a distributed denial of service attack.

Which advanced expression can the engineer write for a Responder policy?

A.
CLIENT.IP.SRC.IPREP_THREAT_CATEGORY(SPAM_SOURCES)
A.
CLIENT.IP.SRC.IPREP_THREAT_CATEGORY(SPAM_SOURCES)
Answers
B.
CLIENT.IP.SRC.IPREP_THREAT_CATEGORY(BOTNETS)
B.
CLIENT.IP.SRC.IPREP_THREAT_CATEGORY(BOTNETS)
Answers
C.
CLIENT.IP.SRC.IPREP_THREAT_CATEGORY(WEB_ATTACKS)
C.
CLIENT.IP.SRC.IPREP_THREAT_CATEGORY(WEB_ATTACKS)
Answers
D.
CLIENT.IP.SRC.IPREP_THREAT_CATEGORY(WINDOWS_EXPLOITS)
D.
CLIENT.IP.SRC.IPREP_THREAT_CATEGORY(WINDOWS_EXPLOITS)
Answers
Suggested answer: C

A Citrix Engineer wants to delegate management of Citrix Application Delivery Management (ADM) to a junior team member.

Which assigned role will limit the team member to view all application-related data?

A.
readonly
A.
readonly
Answers
B.
appReadonly
B.
appReadonly
Answers
C.
admin
C.
admin
Answers
D.
appAdmin
D.
appAdmin
Answers
Suggested answer: B

Explanation:

Reference: https://docs.citrix.com/en-us/citrix-application-delivery-management-service/setting-up/configuring-role-based-access-control.html

A Citrix Engineer wants the Citrix Web App Firewall to respond with a page stored on the Citrix ADC when a violation is detected.

Which profile setting accomplishes this?

A.
Redirect URL
A.
Redirect URL
Answers
B.
RFC Profile
B.
RFC Profile
Answers
C.
Default Request
C.
Default Request
Answers
D.
HTML Error Object
D.
HTML Error Object
Answers
Suggested answer: D

Explanation:

Reference: https://support.citrix.com/article/CTX140293

Scenario: A Citrix Engineer implements Application-level Quality of Experience (AppQoE) to protect a web application. Shortly after that, users call to complain that nearly every request is being met with a Captcha.

What can the engineer do to improve the user experience?

A.
Disable the Captcha.
A.
Disable the Captcha.
Answers
B.
Increase the DOS Attack Threshold.
B.
Increase the DOS Attack Threshold.
Answers
C.
Increase the Policy Queue Depth.
C.
Increase the Policy Queue Depth.
Answers
D.
Increase the Session Life.
D.
Increase the Session Life.
Answers
Suggested answer: A
Total 68 questions
Go to page: of 7