ExamGecko
Home Home / Citrix / 1Y0-440

Citrix 1Y0-440 Practice Test - Questions Answers, Page 2

Question list
Search
Search

List of questions

Search

Related questions




Scenario: A Citrix Architect has implemented two high availability pairs of MPX 5500 and MPX 11500 devices respectively with 12.0.53.13 nc version. The Citrix ADC devices are set up to handle Citrix Gateway. Load Balancing. Application Firewall, and Content Switching. The Workspacelab infrastructure is set up to be monitored with Citrix Application Delivery Management version 12.0.53.13 nc by the Workspacelab administrators. The Workspacelab team wants to implement one more pair(s) of Citrix ADC MPX 7500 devices with version 12.0.53.13 nc. The Citrix consulting team has assigned the task to implement these Citrix ADC devices in the infrastructure and set them up to be monitored and managed by Citrix ADC Management and Analytics {Citrix Application Delivery Management). The following are the requirements that were discussed during the project initiation call: Citrix Application Delivery Management should be configured to get the infrastructure information under sections such as HDX Insight, WEB Insight, and Security Insight. Configuration on the new MPX devices should be identical to that of MPX 11500 devices. Configuration changes after the deployment and initial setup should be optimized using Citrix Application Delivery Management. Citrix Application Delivery Management should be utilized to configure templates that can be utilized by the Workspacelab team in future deployments. As per the requirement from the Workspacelab team, Citrix Application Delivery Management should store the audited data for only 15 days. However, the architect is NOT able to view any Information under Analytics. What should the architect do to fix this issue?







Scenario: A Citrix Architect has configured NetScaler Gateway integration with a XenApp environment to provide access to users from two domains: vendorlab.com and workslab.com. The Authentication method used is LDAP.

Which two steps are required to achieve Single Sign-on StoreFront using a single store? (Choose two.)

A.
Configure Single sign-on domain in Session profile 'userPrincipalName'.
A.
Configure Single sign-on domain in Session profile 'userPrincipalName'.
Answers
B.
Do NOT configure SSO Name attribute in LDAP Profile.
B.
Do NOT configure SSO Name attribute in LDAP Profile.
Answers
C.
Do NOT configure sign-on domain in Session Profile.
C.
Do NOT configure sign-on domain in Session Profile.
Answers
D.
Configure SSO Name attribute to 'userPrincipalName' in LDAP Profile.
D.
Configure SSO Name attribute to 'userPrincipalName' in LDAP Profile.
Answers
Suggested answer: B, D

Scenario: A Citrix Architect has implemented two high availability pairs of MPX 5500 and MPX 11500 devices respectively with 12.0.53.13 nc version. The NetScaler devices are set up to handle NetScaler Gateway, Load Balancing, Application Firewall, and Content Switching. The Workspacelab infrastructure is set up to be monitored with NMAS version 12.0.53.13 nc by the Workspacelab administrators. The Workspacelab team wants to implement one more pair of NetScaler MPX 7500 devices with version 12.0.53.13 nc.

The Citrix consulting team has assigned the task to implement these NetScaler devices in the infrastructure and set them up to be monitored and managed by NMAS.

The following are the requirements that were discussed during the project initiation call:

NMAS should be configured to get the infrastructure information under sections such as HDX Insight, WEB Insight, and Security Insight.

Configuration on the new MPX devices should be identical to MPX 11500 devices.

Configuration changes after the deployment and initial setup should be optimized using NMAS.

NMAS should be utilized to configure templates that can be utilized by the Workspacelab team in future deployment.

As per the requirement from the Workspacelab team, NMAS should be store the audited data for only 15 days.

Which process should the architect utilize to ensure that the deployment of MPX 11500 devices are optimized and that it is correct, before deploying the devices in production?

A.
Under Stylebooks; Inbuilt and composite stylebook templates should be utilized prior to deployment.
A.
Under Stylebooks; Inbuilt and composite stylebook templates should be utilized prior to deployment.
Answers
B.
Under Stylebooks; Public and composite stylebook templates should be utilized prior to deployment.
B.
Under Stylebooks; Public and composite stylebook templates should be utilized prior to deployment.
Answers
C.
Under Configuration Management; Configuration Audit and Advice should be used prior to deployment.
C.
Under Configuration Management; Configuration Audit and Advice should be used prior to deployment.
Answers
D.
Under Configuration jobs; Configuration Audit and Advice should be used prior to deployment.
D.
Under Configuration jobs; Configuration Audit and Advice should be used prior to deployment.
Answers
Suggested answer: C

Scenario: A Citrix Architect needs to assess a NetScaler Gateway deployment that was recently completed by a customer and is currently in pre-production testing. The NetScaler Gateway needs to use ICA proxy to provide access to a XenApp and XenDesktop environment. During the assessment, the customer informs the architect that users are NOT able to launch published resources using the Gateway virtual server.

Click the Exhibit button to view the troubleshooting details collected by the customer.

What is the cause of this issue?

A.
The required ports have NOT been opened on the firewall between the NetScaler gateway and the Virtual Delivery Agent (VDA) machines.
A.
The required ports have NOT been opened on the firewall between the NetScaler gateway and the Virtual Delivery Agent (VDA) machines.
Answers
B.
The StoreFront URL configured in the NetScaler gateway session profile is incorrect.
B.
The StoreFront URL configured in the NetScaler gateway session profile is incorrect.
Answers
C.
The Citrix License Server is NOT reachable.
C.
The Citrix License Server is NOT reachable.
Answers
D.
The Secure Ticket Authority (STA) servers are load balanced on the NetScaler.
D.
The Secure Ticket Authority (STA) servers are load balanced on the NetScaler.
Answers
Suggested answer: D

Scenario: A Citrix Architect needs to design a hybrid XenApp and XenDesktop environment which will include Citrix Cloud as well as resource locations in an on-premises datacenter and Microsoft Azure.

Organizational details and requirements are as follows:

Active XenApp and XenDesktop Service subscription

No existing NetScaler deployment

Global Server Load Balancing is used to direct connection requests to Location B, if the StoreFront server in Location B fails, connections should be directed to Location A.

Click the Exhibit button to view the conceptual environment architecture.

The architect should use _____ in Location A, and should use ________ in Location B. (Choose the correct option to complete the sentence.)

A.
NetScaler ADC (BYO); NetScaler gateway appliance
A.
NetScaler ADC (BYO); NetScaler gateway appliance
Answers
B.
NetScaler ADC (BYO); No NetScaler products
B.
NetScaler ADC (BYO); No NetScaler products
Answers
C.
NetScaler ADC (BYO); NetScaler ADC (BYO)
C.
NetScaler ADC (BYO); NetScaler ADC (BYO)
Answers
D.
NetScaler Gateway appliance; NetScaler Gateway appliance
D.
NetScaler Gateway appliance; NetScaler Gateway appliance
Answers
E.
NetScaler Gateway appliance; NetScaler ADC (BYO)
E.
NetScaler Gateway appliance; NetScaler ADC (BYO)
Answers
Suggested answer: B

Explanation:

-- NetScaler Gateway as a service doesnot perform loadbalancing, GSLB and two factor authentication. -- NetScaler ADC (BYO) is for full feature ADC. (Azure Support only BYO). -- NetScaler ICA Proxy doesnot perform loadbalancing, GSLB. Cloud Hosted NetScaler Gateway can only be deployed in ICA-Proxy mode to enable remote access to published resources.

Note the requirements: -- Multifactor authentication -- Loadbalancing in site B

Scenario: A Citrix Architect needs to assess an existing NetScaler Gateway deployment. During the assessment, the architect collected key requirements for VPN users, as well as the current session profile settings that are applied to those users.

Click the Exhibit button to view the information collected by the architect.

Which configurations should the architect change to meet all the stated requirements?

A.
Item 4
A.
Item 4
Answers
B.
Item 3
B.
Item 3
Answers
C.
Item 5
C.
Item 5
Answers
D.
Item 2
D.
Item 2
Answers
E.
Item 1
E.
Item 1
Answers
Suggested answer: B

Scenario: A Citrix Architect needs to design a hybrid XenApp and XenApp and XenDesktop environment which will include Citrix Cloud as well as resource locations in on-premises datacenter and Microsoft Azure.

Organizational details and requirements are as follows:

Active XenApp and XenDesktop Service subscription

No existing NetScaler deployment

About 3,000 remote users are expected to regularly access the environment

Multi-factor authentication should be used for all external connections

Solution must provide load balancing for backend application servers

Load-balancing services must be in Location B

Click the Exhibit button to view the conceptual environment architecture.

The architect should use ________ in Location A, and should use _________ in Location B. (Choose the correct option to complete the sentence.)

A.
Citrix Gateway as a Service, no NetScaler products
A.
Citrix Gateway as a Service, no NetScaler products
Answers
B.
No Citrix products, Citrix ADC (BYO)
B.
No Citrix products, Citrix ADC (BYO)
Answers
C.
Citrix Gateway as a Service, Citrix ADC (BYO)
C.
Citrix Gateway as a Service, Citrix ADC (BYO)
Answers
D.
No Citrix products, Citrix ICA Proxy (cloud-licensed)
D.
No Citrix products, Citrix ICA Proxy (cloud-licensed)
Answers
E.
Citrix Gateway as a Service, Citrix ICA Proxy (cloud-licensed)
E.
Citrix Gateway as a Service, Citrix ICA Proxy (cloud-licensed)
Answers
F.
No Citrix products; Citrix Gateway appliance
F.
No Citrix products; Citrix Gateway appliance
Answers
Suggested answer: C

Scenario: A Citrix Architect needs to design a NetScaler deployment in Microsoft Azure. An Active-Passive NetScaler VPX pair will provide load balancing for three distinct web applications. The architect has identified the following requirements:

Minimize deployment costs where possible.

Provide dedicated bandwidth for each web application.

Provide a different public IP address for each web application.

For this deployment, the architect should configure each NetScaler VPX machine to have ______ network interface(s) and configure IP address by using ________. (Choose the correct option to complete the sentence).

A.
4; Port Address Translation
A.
4; Port Address Translation
Answers
B.
1; Network Address Translation
B.
1; Network Address Translation
Answers
C.
1; Port Address Translation
C.
1; Port Address Translation
Answers
D.
2; Network Address Translation
D.
2; Network Address Translation
Answers
E.
4; Network Address Translation
E.
4; Network Address Translation
Answers
F.
2; Port Address Translation
F.
2; Port Address Translation
Answers
Suggested answer: C

Scenario: Based on a discussion between a Citrix Architect and a team of Workspacelab members, the MPX Logical layout for Workspacelab has been created across three (3) sites.

They captured the following requirements during the design discussion held for a Citrix ADC design project:

All three (3) Workspacelab sites (DC, NDR, and DR) will have similar NetScaler configurations and design.

Both external and internal NetScaler MPX appliances will have Global Server Load Balancing (GSLB) configured and deployed in Active/Passive mode.

GSLB should resolve both A and AAA DNS queries.

In the GSLB deployment, the NDR site will act as backup for the DC site, whereas the DR site will act as backup for the NDR site.

When the external NetScaler replies to DNS traffic coming in through Cisco Firepower IPS, the replies should be sent back through the same path.

On the internal NetScaler, both the front-end VIP and backend SNIP will be part of the same subnet.

The external NetScaler will act as default gateway for the backend servers.

All three (3) sites, DC, NDR, and DR, will have two (2) links to the Internet from different service providers configured in Active/Standby mode.

Which design decision must the architect make the design requirements above?

A.
MAC-based Forwarding must be enabled on the External NetScaler Pair.
A.
MAC-based Forwarding must be enabled on the External NetScaler Pair.
Answers
B.
NSIP of the External NetScaler must be configured as the default gateway on the backend servers.
B.
NSIP of the External NetScaler must be configured as the default gateway on the backend servers.
Answers
C.
The Internal NetScaler must be deployed in Transparent mode.
C.
The Internal NetScaler must be deployed in Transparent mode.
Answers
D.
The ADNS service must be configured with an IPv6 address.
D.
The ADNS service must be configured with an IPv6 address.
Answers
Suggested answer: C

Scenario: A Citrix Architect has set up NetScaler MPX devices in high availability mode with version 12.0. 53.13 nc. These are placed behind a Cisco ASA 5505 Firewall is configured to block traffic using access control lists. The network address translation (NAT) is also performed on the firewall.

The following requirements were captured by the architect during the discussion held as part of the NetScaler security implementation project with the customer's security team:

The NetScaler device:

Should monitor the rate of traffic either on a specific virtual entity or on the device. It should be able to mitigate the attacks from a hostile client sending a flood of requests. The NetScaler device should be able to stop the HTTP, TCP, and DNS based requests.

Needs to protect backend servers from overloading.

Needs to queue all the incoming requests on the virtual server level instead of the service level.

Should provide access to resources on the basis of priority.

Should provide protection against well-known Windows exploits, virus-infected personal computers, centrally managed automated botnets, compromised webservers, known spammers/hackers, and phishing proxies.

Should provide flexibility to enforce the desired level of security check inspections for the requests originating from a specific geolocation database.

Should block the traffic based on a pre-determined header length, URL length, and cookie length. The device should ensure that characters such as a single straight quote (*); backslash(\), and semicolon (;) are either blocked, transformed, or dropped while being sent to the backend server.

Which two security features should the architect configure to meet these requirements? (Choose two.)

A.
Pattern sets
A.
Pattern sets
Answers
B.
Rate limiting
B.
Rate limiting
Answers
C.
HTTP DDOS
C.
HTTP DDOS
Answers
D.
Data sets
D.
Data sets
Answers
E.
APPQOE
E.
APPQOE
Answers
Suggested answer: B, E

A Citrix Architect needs to make sure that maximum concurrent AAA user sessions are limited to 4000 as a security restriction.

Which authentication setting can the architect utilize to view the current configuration?

A.
Global Session Settings
A.
Global Session Settings
Answers
B.
AAA Parameters
B.
AAA Parameters
Answers
C.
Active User Session
C.
Active User Session
Answers
D.
AAA Virtual Server
D.
AAA Virtual Server
Answers
Suggested answer: A
Total 152 questions
Go to page: of 16