New Year Special Sale Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: scxmas70

1Y0-440 Exam Dumps - Architecting a Citrix Networking Solution

Go to page:
Question # 17

A Citrix Architect needs to configure advanced features of Citrix ADC by using StyleBooks as a resource in the Heat service.

What is the correct sequence of tasks to be completed for configuring Citrix ADC using the Heat stack?

A.

1. Install Citrix ADC Bundle for OpenStack

2 Register OpenStack with Citrix Application Delivery Management

3. Add Citrix ADC instances (Optional)

4. Create service packages (Add OpenStack tenants)

5. Prepare the HOT by using the Citrix ADC Heat resources and Citrix ADC Network Resource

6. Deploy the Heat stack

B.

1. Install Citrix ADC Bundle for OpenStack

2 Add Citrix ADC instances (Optional)

3. Create service packages (Add OpenStack tenants)

4. Prepare the HOT by using the Citrix ADC Heat resources and Citrix ADC Network Resource

5. Register OpenStack with Citrix Application Delivery Management

6. Deploy the Heat stack

C.

1. Install Citrix ADC Bundle for OpenStack

2. Deploy the Heat stack

3. Register OpenStack with Citrix Application Delivery Management

4. Add Citrix ADC instances (Optional)

5. Prepare the HOT by using the Citrix ADC Heat resources and Citrix ADC Network Resource

6. Create service packages (Add OpenStack tenants)

D.

1. Install NetScaler Bundle for OpenStack

2. Prepare the HOT by using the NetScaler heat resources and NetScaler Network Resource

3. Register OpenStack with NMAS

4. Deploy the Heat stack

5. Add NetScaler instances (Optional)

6. Create service packages (Add OpenStack tenants)

Full Access
Question # 18

Scenario: A Citrix Architect needs to configure a full VPN session profile to meet the following requirements:

  • Users should be able to send the traffic only for the allowed networks through the VPN tunnel.
  • Only the DNS requests ending with the configured DNS suffix workspacelab.com must be sent to NetScaler Gateway.
  • If the DNS query does NOT contain a domain name, then DNS requests must be sent to NetScaler gateway.

Which settings will meet these requirements?

A.

Split Tunnel to OFF, Split DNS Both

B.

Split Tunnel to ON, Split DNS Local

C.

Split Tunnel to OFF, Split DNS Remote

D.

Split Tunnel to ON, Split DNS Remote

Full Access
Question # 19

Scenario: A Citrix Architect and a team of Workspacelab members have met for a design discussion about the NetScaler Design Project. They captured the following requirements:

  • Two pairs of NetScaler MPX appliances will be deployed in the DMZ network and the internal network.
  • High availability will be accessible between the pair of NetScaler MPX appliances in the DMZ network.
  • Multi-factor authentication must be configured for the NetScaler Gateway virtual server.
  • The NetScaler Gateway virtual server is integrated with XenApp/XenDesktop environment.
  • Load balancing must be deployed for the users from the workspacelab.com and vendorlab.com domains.
  • The logon page must show the workspacelab logo.
  • Certificate verification must be performed to identify and extract the username.
  • The client certificate must have UserPrincipalName as a subject.
  • All the managed workstations for the workspace users must have a client identifications certificate installed on it.
  • The workspacelab users connecting from a managed workstation with a client certificate on it should be authenticated using LDAP.
  • The workspacelab users connecting from a workstation without a client certificate should be authenticated using LDAP and RADIUS.
  • The vendorlab users should be authenticated using Active Directory Federation Service.
  • The user credentials must NOT be shared between workspacelab and vendorlab.
  • Single Sign-on must be performed between StoreFront and NetScaler Gateway.
  • A domain drop down list must be provided if the user connects to the NetScaler Gateway virtual server externally.
  • The domain of the user connecting externally must be identified using the domain selected from the domain drop down list.

On performing the deployment, the architect observes that users are always prompted with two-factor authentication when trying to assess externally from an unmanaged workstation.

Click the exhibit button to view the configuration.

What should the architect do to correct this configuration?

A.

Unbind LoginSchema Policy LDAP_RADIUS from the virtual server.

B.

Bind the Portal theme as Domaindropdown.

C.

Bind the LoginSchema Policy Domaindropdown to priority 90.

D.

Bind the Default LoginSchema Policy as Domaindropdown.

Full Access
Question # 20

Scenario: A Citrix Architect has deployed load balancing for SharePoint 2010 on a Citrix ADC instance. While editing the document, the architect observed the error displayed below:

Sorry, we couldn't open 'https://sharepointcs.emea.in/Shared Documents/Citrix Enhancement Request Form.doc'

After troubleshooting, the architect discovers the issue. When a user opens a document, it opens in the browser, but while editing the document, thd session is transferred from the browser to the Word application During this time, the cookies should be transferred from the browser to the Word application.

Which two configurations should the architect modify to ensure that the cookies are shared between the browser and non-browser applications? (Choose two.)

A.

Enable Persistent Cookie

B.

Disable Persistent Cookie

C.

Set HTTPOnly Cookie to NO

D.

Set the NSC_AAAC cookie with HTTPOnly Flag

E.

Set lb vserver -persistenceType COOKIEINSERT

F.

Set HTTPOnly Cookie to Yes

Full Access
Question # 21

Scenario: Based on a discussion between a Citrix Architect and a team of Workspacelab members, the MPX Logical layout for Workspacelab has been created across three (3) sites.

They captured the following requirements during the design discussion held for a Citrix ADC design project:

  • All three (3) Workspacelab sites (DC, NDR, and DR) will have similar Citrix ADC configurations and design.
  • Both external and internal Citrix ADC MPX appliances will have Global Server Load Balancing (GSLB) configured and deployed in Active/Passive mode.
  • GSLB should resolve both A and AAA DNS queries.
  • In the GSLB deployment, the NDR site will act as backup for the DC site, whereas the DR site will act as backup for the NDR site.
  • When the external Citrix ADC replies to DNS traffic coming in through Cisco Firepower IPS, the replies should be sent back through the same path.
  • On the internal Citrix ADC, both the front-end VIP and backend SNIP will be part of the same subnet.
  • The external Citrix ADC will act as default gateway for the backend servers.
  • All three (3) sites, DC, NDR, and DR, will have two (2) links to the Internet from different service providers configured in Active/Standby mode.

Which design decision must the architect make the design requirements above?

A.

MAC-based Forwarding must be enabled on the External Citrix ADC Pair.

B.

NSIP of the External Citrix ADC must be configured as the default gateway on the backend servers.

C.

The Internal Citrix ADC must be deployed in Transparent mode.

D.

The ADNS service must be configured with an IPv6 address.

Full Access
Question # 22

For which three reasons should a Citrix Architect perform a capabilities assessment when designing and deploying a new NetScaler in an existing environment? (Choose three.)

A.

Understand the skill set of the company.

B.

Assess and identify potential risks for the design and build phase.

C.

Establish and prioritize the key drivers behind a project.

D.

Determine operating systems and application usage.

E.

Identify other planned projects and initiatives that must be integrated with the design and build phase.

Full Access
Question # 23

Which IP address should be bound to VLAN 11?

A.

40.50.60.2

B.

192.168.30.2

C.

40.50.60.172

D.

192.168.20.170

E.

192.168.20.2

F.

192.168.30.171

G.

40.50.60.172

Full Access
Question # 24

Scenario: A Citrix Architect needs to deploy a load balancing for an application server on the NetScaler. The authentication must be performed on the NetScaler. After the authentication, the Single Sign-on with the application servers must be performed using Kerberos impersonation.

Which three authentication methods can the Architect utilize to gather the credentials from the user in this scenario? (Choose three.)

A.

SAML

B.

OTP

C.

TACACS

D.

WEBAUTH

E.

LDAP

Full Access
Go to page: