ExamGecko
Question list
Search
Search

List of questions

Search

Related questions







Scenario: A Citrix Architect has implemented two high availability pairs of MPX 5500 and MPX 11500 devices respectively with 12.0.53.13 nc version. The Citrix ADC devices are set up to handle Citrix Gateway. Load Balancing. Application Firewall, and Content Switching. The Workspacelab infrastructure is set up to be monitored with Citrix Application Delivery Management version 12.0.53.13 nc by the Workspacelab administrators. The Workspacelab team wants to implement one more pair(s) of Citrix ADC MPX 7500 devices with version 12.0.53.13 nc. The Citrix consulting team has assigned the task to implement these Citrix ADC devices in the infrastructure and set them up to be monitored and managed by Citrix ADC Management and Analytics {Citrix Application Delivery Management). The following are the requirements that were discussed during the project initiation call: Citrix Application Delivery Management should be configured to get the infrastructure information under sections such as HDX Insight, WEB Insight, and Security Insight. Configuration on the new MPX devices should be identical to that of MPX 11500 devices. Configuration changes after the deployment and initial setup should be optimized using Citrix Application Delivery Management. Citrix Application Delivery Management should be utilized to configure templates that can be utilized by the Workspacelab team in future deployments. As per the requirement from the Workspacelab team, Citrix Application Delivery Management should store the audited data for only 15 days. However, the architect is NOT able to view any Information under Analytics. What should the architect do to fix this issue?




Question 138 - 1Y0-440 discussion

Report
Export

Scenario: A Citrix Architect has set up Citrix ADC MPX devices in high availability mode with version 12.0.53.13 nc. These are placed behind a Cisco ASA 5505 firewall. The Cisco ASA firewall is configured to block traffic using access control lists. The network address translation (NAT) is also performed on the firewall.

The following requirements were captured by the architect during the discussion held as part of the Citrix ADC security implementation project with the customers security team:

The Citrix ADC MPX device:

should monitor the rate of traffic either on a specific virtual entity or on the device It should be able to mitigate the attacks from a hostile client sending a flood of requests. The Citrix ADC device should be able to stop the HTTP TCP. and DNS based requests

needs to protect backend servers from overloading

needs to queue all the incoming requests on the virtual server level instead of the service level

should provide access to resources on the basis of priority

should provide protection against well-known Windows exploits virus-infected personal computers, centrally managed automated botnets, compromised webservers, known spammers/hackers, and phishing proxies

should provide flexibility to enforce the desired level of security check inspections for the requests originating from a specific geolocation database.

should block the traffic based on a pre-determined header length. URL length and cookie length. The device should ensure that characters such as a single straight quote ('): backslash (\); and semicolon (;) are either blocked, transformed, or dropped while being sent to the backend server.

Which security feature should the architect configure to meet these requirements?

A.
Configure Application Firewall with HTML cross-site scripting to block unwanted traffic
Answers
A.
Configure Application Firewall with HTML cross-site scripting to block unwanted traffic
B.
Configure pattern sets using regular expressions to block attacks
Answers
B.
Configure pattern sets using regular expressions to block attacks
C.
Configure Signatures manually and apply them to the Application Firewall profile
Answers
C.
Configure Signatures manually and apply them to the Application Firewall profile
D.
Configure signatures to auto-update and apply them to the Application Firewall profile
Answers
D.
Configure signatures to auto-update and apply them to the Application Firewall profile
E.
Configure IP address reputation and use IPREP and webroot to block the traffic
Answers
E.
Configure IP address reputation and use IPREP and webroot to block the traffic
Suggested answer: A
asked 16/09/2024
tho nguyen
37 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first