A Citrix Administrator needs to ensure that a revoked certificate is NOT being used for client certificate authentication.
Which two entities can the administrator select on the Citrix ADC? (Choose two.)
A. Online Certification Status Protocol
B. Certificate Revocation List
C. Subject Alternative certificates
D. Server Name Indication
Scenario: A user is attempting to access a web server, which is load-balanced by the NetScaler using HTTPS. The user received the following message:
SSL/TLS error: You have not chosen to trust "Certificate Authority" the issuer of the server's security certificate.
What can a Citrix Administrator do to prevent users from viewing this message?
A. Ensure that the intermediate Certificate is linked to the Server Certificate.
B. Ensure that the user has the Server Certificate installed.
C. Ensure that the intermediate Certificate is linked to the Root Certificate.
D. Ensure that the user has the Certificate's Public key.
A Citrix Administrator needs to configure single sign-on to a StoreFront server using an external, secure single URL.
Which type of virtual server can the administrator use to meet this requirement?
A. Load Balancing
B. Content Switching
C. VPN
D. Unified Gateway
Scenario: A Citrix Administrator needs to configure a NetScaler Gateway virtual server in order to meet the security requirements of the organization. The administrator needs to configure timeouts for end-user sessions, to be triggered by the following behaviors:
-Inactivity for at least 15 minutes -No keyboard or mouse activity for at least 15 minutes
Which two timeout settings can the administrator configure to meet the requirements? (Choose two.)
A. Client Idle Time-out set to 15
B. Forced Time-out set to 15
C. Client Idle Time-out set to 900
D. Session Time-out set to 15
E. Session Time-out set to 900
F. Forced Time-out set to 900
Which option is needed to configure the Citrix Gateway to provide users with multiple logon options after successful authentication, if the users are connected through clientless access?
A. Client choices without using Endpoint Analysis
B. Configuration of Endpoint Analysis
C. Configuration of Quarantine Group
D. Client choices options with mandatory Endpoint Analysis
Scenario: A NetScaler has two interfaces as 1/1 and 1/2 with MAC-based Forwarding enabled. Below are the specifications:
-Interface 1/1 and IP 192.168.10.10 is bound to VLAN 10.
-On Interface 1/2 VLAN 20 and VLAN 30 are tagged.
-VLAN 20 is bound to IP 192.168.20.10 and VLAN 30 is bound to 192.168.30.10
The NetScaler receives a packet for VIP 192.168.30.30 on interface 1/1.
Which interface of NetScaler will send a reply back in this environment?
A. Interface 1/1
B. NetScaler will drop the packet received on interface 1/1
C. Interface 1/2
D. Netscaler will reply on interfaces 1/1 and 1/2
Scenario: A Citrix Administrator created four session policies and applied them to the bind points below. Policy A: Split tunnel ON priority 10 bound at the Virtual Server level Policy B: Split tunnel OFF priority 20 bound at the Group level Policy C: Split tunnel NOT configured priority 30 bound at the Global level Policy D: Split tunnel ON priority 6 bound at the Group level
Which policy will take precedence?
A. Policy C
B. Policy D
C. Policy A
D. Policy B
Which two items can a Citrix Administrator change when configuring a default portal theme? (Choose two.)
A. Center logo
B. NetScaler with Unified Gateway header
C. Browser requirements
D. Font color
Which reason would account for uneven user connections on a back-end server using the default load-balancing method?
A. Persistence is enabled
B. Application resource utilization is uneven
C. Incorrect load-balancing method is selected
D. Multiplexing is disabled
Scenario: A Citrix Administrator manages an environment that has an externally accessible website. The
administrator would like to provide end-to-end encryption and use features such as caching and
compression on the NetScaler.
Which setting in SSL offload should the administrator configure to meet this requirement?
A. SSL_TCP front-end, TCP back-end
B. SSL front-end, HTTP back-end
C. SSL_TCP front-end, SSL_TCP back-end
D. SSL front-end, SSL back-end
A Citrix Administrator receives complaints from some users that authentication for the Citrix Gateway site
fails.
Which tool can the administrator use to find data regarding time of failure and a list of users facing this
issue?
A. Gateway Insight
B. Security Insight
C. Web Insight
D. HDX Insight
Scenario: A Citrix Administrator is running applications on thousands of load-balanced back-end servers in a large infrastructure. It is difficult to track and troubleshoot problems due to the large volume of traffic received.
Which feature of NetScaler Management and Analytics System (MAS) can the administrator configure to monitor and troubleshoot in detail for an environment of this size?
A. AppFlow Analytics
B. Application Security Analytics
C. Application Performance Analytics
D. Advanced Analytics with Telemetry Node installed
In an environment which requires secure user access, a Citrix Administrator configures Authentication,
Authorization and Auditing (AAA) to redirect a user to the logon page.
Which four steps are required to complete the authentication process? (Choose four.)
A. Configure a syslog server to capture invalid logon attempts?
B. Verify that the user is authorized to access specific intranet content
C. Collect the user's credentials to cache them in a directory that is accessible through LDAP
D. Log the user accesses, including invalid login attempts, in an audit log
E. Create a load-balancing virtual server to redirect for secure access
F. Maintain a session timeout, after which users must authenticate again to regain access to the intranet
G. Apply specified two-factor authentication method
Scenario: A Citrix Administrator manages an environment that has multiple websites running through a NetScaler MPX 5550. The NetScaler meets the needs of the environment throughout the year, except in December, when the capacity doubles. The administrator needs to handle this increased web traffic with a temporary, cost-effective solution. Which action should the administrator recommend in order to handle the increased web traffic?
A. Purchase a BurstPack License
B. Purchase NetScaler Gateway Platform License
C. Purchase a license to upgrade the MPX 5550 to a MPX 5650
D. Purchase Universal License
Which type of policy should a Citrix Administrator configure to ensure that only users who have data antivirus protection can connect to the environment?
A. Traffic
B. Pre-Authentication Scan
C. Smart Control
D. SmartAccess