Weekend Sale - 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: spcl70

1Y0-440 PDF

$33

$109.99

3 Months Free Update

  • Printable Format
  • Value of Money
  • 100% Pass Assurance
  • Verified Answers
  • Researched by Industry Experts
  • Based on Real Exams Scenarios
  • 100% Real Questions

1Y0-440 PDF + Testing Engine

$52.8

$175.99

3 Months Free Update

  • Exam Name: Architecting a Citrix Networking Solution
  • Last Update: May 19, 2025
  • Questions and Answers: 152
  • Free Real Questions Demo
  • Recommended by Industry Experts
  • Best Economical Package
  • Immediate Access

1Y0-440 Engine

$39.6

$131.99

3 Months Free Update

  • Best Testing Engine
  • One Click installation
  • Recommended by Teachers
  • Easy to use
  • 3 Modes of Learning
  • State of Art Technology
  • 100% Real Questions included

1Y0-440 Practice Exam Questions with Answers Architecting a Citrix Networking Solution Certification

Question # 6

Which session parameter does the default authorization setting control when authentication, authorization, and auditing profiles are configured?

A.

Determines the default logging level

B.

Determines whether the Citrix ADC appliance will allow or deny access to content for which there is no specific authorization policy

C.

Determines the default period after which the user is automatically disconnected and must authenticate again to access the intranet

D.

Determines whether the Citrix ADC appliance will log users onto all web applications automatically after they authenticate or will pass users to the web application logon page to authenticate for each application.

E.

Controls are amount of time the users can be idle before they are automatically disconnected.

F.

Determines whether the Citrix ADC appliance will use primary or the secondary authentication for SSO

Full Access
Question # 7

Scenario: A Citrix Architect needs to design a NetScaler deployment in Microsoft Azure. An Active-Passive NetScaler VPX pair will provide load balancing for three distinct web applications. The architect has identified the following requirements:

  • Minimize deployment costs where possible.
  • Provide dedicated bandwidth for each web application.
  • Provide a different public IP address for each web application.

For this deployment, the architect should configure each NetScaler VPX machine to have ______ network interface(s) and configure IP address by using ________. (Choose the correct option to complete the sentence).

A.

4; Port Address Translation

B.

1; Network Address Translation

C.

1; Port Address Translation

D.

2; Network Address Translation

E.

4; Network Address Translation

F.

2; Port Address Translation

Full Access
Question # 8

Scenario: A Citrix Architect has deployed an authentication setup for the load balancing virtual server for the SAP application. The authentication is being performed using RADIUS and LDAP. RADIUS is the first factor, and LDAP is the second factor in the authentication. The Single Sign-on with SAP application should be performed using LDAP credentials. Which session profile should be used to perform the Single Sign-on?

A.

add tm sessionAction prof -sessTimeout 30 -defaultAuthorizationAction ALLOW -SSO ON -ssoCredential PRIMARY -httpOnlyCookie NO

B.

add vpn sessionAction prof-sessTimeout 30 -defaultAuthorizationAction ALLOW -SSO ON -ssoCredential SECONDARY -httpOnlyCookie NO

C.

add vpn sessionAction prof -sessTimeout 30 -defaultAuthorizationAction ALLOW -SSO ON -ssoCredential PRIMARY -httpOnlyCookie NO

D.

add tm sessionAction prof -sessTimeout 30 -defaultAuthorizationAction ALLOW -SSO ON -ssoCredential SECONDARY -httpOnlyCookie NO

Full Access
Question # 9

Scenario: Based on a discussion between a Citrix Architect and team of Workspacelab has been created across three (3) sites.

They captured the following requirements during the design discussion held for NetScaler design projects:

  • All three (3) Workspacelab sites (DC, NDR, and DR) will have similar NetScaler configuration and design.
  • Both external and internal NetScaler MPX appliances will have Global Server Load balancing (GSLB) configured and deployed in Active/Passive mode.
  • GSLB should resolve both A and AAA DNS queries.
  • In the GSLB deployment, the NDR site will act as backup for the DC site. whereas the DR site will act as backup for the NDR site.
  • When the external NetScaler replies to DNS traffic coming in through Cisco Firepower IPS, the replies should be sent back through the same path.
  • On the internal NetScaler, both front-end VIP and back-end SNIP will be part of the same subnet.
  • USIP is configured on the DMZ NetScaler appliances.
  • The external NetScaler will act default gateway for back-end servers.
  • All three (3) sites (DC, NDR, and DR) will have two (2) links to the Internet from different service providers configured in Active/Standby mode.

Which design decision must the architect make to meet the design requirements above?

A.

Interface 0/1 must be used for DNS traffic.

B.

The SNIP of the external NetScaler must be configured as default gateway on the back-end servers.

C.

ADNS service must be used with IPv6 address.

D.

Policy-Based Route with next hop as CISCO IPS must be configured on the external NetScaler.

Full Access
Question # 10

Scenario: A Citrix Architect needs to design a hybrid Citrix Virtual App and Citrix Virtual Desktop environment which will include as well as resource locations in an on-premises datacenter and Microsoft Azure.

Organizational details and requirements are as follows:

  • Active Citrix Virtual App and Citrix Virtual Desktop Service subscription
  • No existing Citrix deployment
  • Minimization of additional costs
  • All users should correct directly to the resource locations containing the servers which will host HDX sessions

Click the Exhibit button to view the conceptual environment architecture.

1Y0-440 question answer

The architect should use___________ in Location A, and should use _______________ in Location B. (Choose the correct option to complete the sentence.)

A.

No Citrix products; Citrix ICA Proxy (cloud-licensed)

B.

Citrix Gateway as a Service; Citrix ICA Proxy (cloud-licensed)

C.

Citrix Gateway as a Service; no Citrix ADC products

D.

No Citrix products; Citrix Gateway appliance

E.

Citrix gateway as a Service; Citrix ADC (BYO)

Full Access
Question # 11

Scenario: A Citrix Architect needs to assess an existing NetScaler gateway deployment. During the assessment, the architect collects key requirements for different user groups, as well as the current session profile settings that are applied to those users.

Click the Exhibit button to view the information collected by the architect.

1Y0-440 question answer

Which configuration should the architect make to meet these requirements?

A.

Change the Clientless Access settings in an existing session profile.

B.

Change the remote Access settings in StoreFront.

C.

Change ICA proxy settings in an existing session profile.

D.

Change the policy expression in an existing session policy.

E.

Create a new session profile and policy.

Full Access
Question # 12

Scenario: A Citrix Architect and a team of Workspacelab members met to discuss a NetScaler design project. They captured the following requirements from this design discussion:

  • A pair of NetScaler MPX appliances will be deployed in the DMZ network.
  • High Availability will be accessible in the NetScaler MPX in the DMZ Network.
  • Load balancing should be performed for the internal network services like Microsoft Exchange Client Access Services and Microsoft App-V.
  • The load balancing should be performed for StoreFront.
  • The NetScaler Gateway virtual server will be utilizing the StoreFront load-balancing virtual server.
  • The NetScaler Gateway virtual server and StoreFront.
  • The NetScaler Gateway virtual service and StoreFront and load-balancing services are publicly accessible.
  • The traffic for internal and external services must be isolated.

Click the Exhibit button to review the logical network diagram.

1Y0-440 question answer

Which two design decisions are incorrect based on these requirements? (Choose two.)

A.

LB StoreFront bound to traffic Domain 0

B.

NetScaler Gateway VIP bound to Traffic Domain 1

C.

LB APP-V bound to Traffic Domain 1

D.

SNIP 192.168.20.2 bound to Traffic Domain 1

Full Access
Question # 13

Scenario: A Citrix Architect has deployed an authentication setup with a ShareFile load-balancing virtual server. The NetScaler is configured as the Service Provider and Portalguard server is utilized as the SAML Identity Provider. While performing the functional testing, the architect finds that after the users enter their credentials on the logon page provided by Portalguard, they get redirected back to the Netscaler Gateway page at uri /cgi/samlauth/ and receive the following error.

1Y0-440 question answer

The events in the /var/log/ns.log at the time of this issue are as follows:

1Y0-440 question answer

What should the architect change in the SAML action to resolve this issue?

A.

Signature Algorithm to SHA 256

B.

The Digest Method to SHA 256

C.

The Digest Method to SHA 1

D.

Signature Algorithm to SHA 1

Full Access
Question # 14

Scenario: The Workspacelab team has configured their NetScaler Management and Analytics (NMAS) environment. A Citrix Architect needs to log on to the NMAS to check the settings.

Which two authentication methods are supported to meet this requirement? (Choose two.)

A.

Certificate

B.

RADIUS

C.

TACACS

D.

Director

E.

SAML

F.

AAA

Full Access
Question # 15

Scenario: A Citrix Architect needs to design a hybrid XenApp and XenApp and XenDesktop environment which will include Citrix Cloud as well as resource locations in on-premises datacenter and Microsoft Azure.

Organizational details and requirements are as follows:

  • Active XenApp and XenDesktop Service subscription
  • No existing Citrix deployment
  • About 3,000 remote users are expected to regularly access the environment
  • Multi-factor authentication should be used for all external connections
  • Solution must provide load balancing for backend application servers
  • Load-balancing services must be in Location B

Click the Exhibit button to view the conceptual environment architecture.

1Y0-440 question answer

The architect should use ________ in Location A, and should use _________ in Location B. (Choose the correct option to complete the sentence.)

A.

Citrix Gateway as a Service, no Citrix products

B.

No Citrix products, Citrix ADC (BYO)

C.

Citrix Gateway as a Service, Citrix ADC (BYO)

D.

No Citrix products, Citrix ICA Proxy (cloud-licensed)

E.

Citrix Gateway as a Service, Citrix ICA Proxy (cloud-licensed)

F.

No Citrix products; Citrix Gateway appliance

Full Access
Question # 16

Which three parameters must a Citrix Architect designate when creating a new session policy? (Choose three.)

A.

Single Sign-on Domain

B.

Request Profile

C.

Name

D.

Enable Persistent Cookie

E.

Expression

Full Access
Question # 17

Which three tasks can a Citrix Architect select and schedule using the Citrix ADC maintenance tasks? (Choose three.)

A.

Convert Citrix Web App Firewall Policy Instances.

B.

Upgrade Citrix ADC CPX Instances

C.

Upgrade Citrix ADC Instances.

D.

Convert a high availability pair of Instances to Cluster.

E.

Convert cluster instances to a high availability pair.

F.

Configure a high availability pair of Citrix ADC Instances.

Full Access
Question # 18

A Citrix Architect needs to configure advanced features of NetScaler by using StyleBooks as a resource in the Heat service.

What is the correct sequence of tasks to be completed for configuring NetScaler using the Heat stack?

A.

1. Install NetScaler Bundle for OpenStack2. Deploy the Heat stack3. Register OpenStack with NMAS4. Add NetScaler instances (Optional)5. Prepare the HOT by using the NetScaler heat resources and NetScaler Network Resource6. Create service packages (Add OpenStack tenants)

B.

1. Install NetScaler Bundle for OpenStack2. Register OpenStack with NMAS3. Add NetScaler instances (Optional)4. Create service packages (Add OpenStack tenants)5. Prepare the HOT by using the NetScaler heat resources and NetScaler Network Resource6. Deploy the Heat stack

C.

1. Install NetScaler Bundle for OpenStack2. Add NetScaler instances (Optional)3. Create service packages (Add OpenStack tenants)4. Prepare the HOT by using the NetScaler heat resources and NetScaler Network Resource5. Register OpenStack with NMAS6. Deploy the Heat stack

D.

1. Install NetScaler Bundle for OpenStack2. Prepare the HOT by using the NetScaler heat resources and NetScaler Network Resource3. Register OpenStack with NMAS4. Deploy the Heat stack5. Add NetScaler instances (Optional)6. Create service packages (Add OpenStack tenants)

Full Access
Question # 19

Which two types of database deployments are supported in Citrix Application Delivery Management? (Choose two.)

A.

High Availability

B.

Multiple Server

C.

Single Server

D.

Cluster instance

E.

Cloud Services

Full Access
Question # 20

_________ content type supports sending NITRO commands to NetScaler. (Choose the correct option to complete sentence.)

A.

Application/sgml

B.

Text/html

C.

Application/json

D.

Text/enriched

Full Access
Question # 21

Scenario: Based on a discussion between a Citrix Architect and a team of Workspacelab members, the MPX Logical layout for Workspacelab has been created across three (3) sites.

The requirements captured during the design discussion held for a NetScaler design project are as follows:

  • Two (2) pairs of Citrix ADC MPX appliances deployed in the DMZ and internal network.
  • High Availability will be accessible for each Citrix ADC MPX
  • The external Citrix ADC MPX appliance will be deployed in multi-arm mode.
  • The internal Citrix ADC MPX will be deployed in single-arm mode wherein it will be connected to Cisco ACI Fabric.
  • All three (3) Workspacelab sites: Dc, NDR and DR, will have similar Citrix ADC configurations and design.

How many Citrix ADC MPX appliances should the architect deploy at each site to meet the design requirements above?

A.

2

B.

8

C.

4

D.

6

E.

10

F.

3

Full Access
Question # 22

Scenario: A Citrix Architect and a team of Workspacelab members met to discuss a Citrix ADC design project. They captured the following requirements from this design discussion:

  • All three (3) Workspacelab sites (DC, NOR, and DR) will have similar Citrix ADC configurations and design.
  • The external Citrix ADC MPX1 appliances will have Global Server Load Balancing (GSLB) configured and deployed in Active/Active mode.
  • ADNS service should be configured on the Citrix ADC to make it authoritative for domain nsg.workspacelab.com • In GSLB deployment, the DNS resolution should be performed to connect the user to the site with least network latency.
  • On the internal Citrix ADC, load balancing for StoreFront services, Citrix XML services, and Citrix Director services must be configured.
  • On the external Citrix ADC, the Gateway virtual server must be configured in ICA proxy mode.

Click the Exhibit button to view the logical representation of the network.

1Y0-440 question answer

On which firewall should the architect configure the access policy to permit the MEP communication between the sites?

A.

CISCO IPS 1 and Checkpoint FW1

B.

CISCO IPS and CISCO IPS1

C.

CISCO IPS and Checkpoint FW1

D.

Checkpoint FW1 and DMZ ASA Firewall

Full Access
Question # 23

Scenario: Based on a discussion between a Citrix Architect and a team of Workspacelab members, the MPX Logical layout for Workspacelab has been created across three (3) sites.

They captured the following requirements during the design discussion held for a Citrix ADC design project:

  • All three (3) Workspacelab sites (DC, NDR, and DR) will have similar NetScaler configurations and design.
  • Both external and internal NetScaler MPX appliances will have Global Server Load Balancing (GSLB) configured and deployed in Active/Passive mode.
  • GSLB should resolve both A and AAA DNS queries.
  • In the GSLB deployment, the NDR site will act as backup for the DC site, whereas the DR site will act as backup for the NDR site.
  • When the external NetScaler replies to DNS traffic coming in through Cisco Firepower IPS, the replies should be sent back through the same path.
  • On the internal NetScaler, both the front-end VIP and backend SNIP will be part of the same subnet.
  • The external NetScaler will act as default gateway for the backend servers.
  • All three (3) sites, DC, NDR, and DR, will have two (2) links to the Internet from different service providers configured in Active/Standby mode.

Which design decision must the architect make the design requirements above?

A.

MAC-based Forwarding must be enabled on the External NetScaler Pair.

B.

NSIP of the External NetScaler must be configured as the default gateway on the backend servers.

C.

The Internal NetScaler must be deployed in Transparent mode.

D.

The ADNS service must be configured with an IPv6 address.

Full Access
Question # 24

Scenario: A Citrix Architect needs to assess a Citrix Gateway deployment that was recently completed by a customer and is currently in pre-production testing. The Citrix Gateway needs to use ICA proxy to provide access to a Citrix Virtual Apps and Citrix Virtual Desktops environment. During the assessment, the customer informs the architect that users are NOT able to launch published resources using the Gateway virtual server.

Click the Exhibit button to view the troubleshooting details collected by the customer.

1Y0-440 question answer

What is the cause of this issue?

A.

The Secure Ticket Authority (STA) servers are load balanced on the Citrix ADC.

B.

The required ports have NOT been opened on the firewall between the Citrix Gateway and the Virtual Delivery Agent (VDA) machines

C.

The StoreFront URL configured in the Citrix Gateway session profile is incorrect

D.

The Citrix License Server is NOT reachable

Full Access
Question # 25

A Citrix Architect has deployed Citrix Application Delivery Management to monitor a high availability pair of Citrix ADC VPX devices.

The architect needs to deploy automated configuration backup to meet the following requirements:

  • The configuration backup file must be protected using a password.
  • The configuration backup must be performed each day at 8:00 AM GMT.
  • The configuration backup must also be performed if any changes are made in the ns.conf file.
  • Once the transfer is successful, auto-delete the configuration file from the NMAS.

Which SNMP trap will trigger the configuration file backup?

A.

netScalerConfigSave

B.

sysTotSaveConfigs

C.

netScalerConfigChange

D.

sysconfigSave

Full Access
Question # 26

Scenario: A Citrix Architect needs to assess an existing NetScaler multi-site deployment. The deployment is using Global Server Load Balancing (GSLB) configured in a parent-child configuration.

Click the Exhibit button to view the diagram of the current GSLB configuration and parent-child relationships, as well as the status of the sites and the connectivity between them.

1Y0-440 question answer

Based on the displayed configuration and status, Child_site1_______ a connection from _______. (Choose the correct option to complete the sentence.)

A.

rejects; SiteP2 and SiteP3; remains a child site of SiteP1

B.

rejects; SiteP3; remains a child site of SiteP1

C.

accepts; SiteP3; becomes its child site

D.

accepts; SiteP2; becomes its child site

E.

does NOT receive; SiteP2 and SiteP3; remains a child site of SiteP1

F.

rejects; SiteP2; remains a child site of SiteP1

Full Access
Question # 27

Which three parameters must a Citrix Architect designate when creating a new session policy? (Choose three.)

A.

Single Sign-on Domain

B.

Request Profile

C.

Name

D.

Enable Persistent Cookie

E.

Expression

Full Access
Question # 28

What can help a Citrix Architect prepare to discuss time scales and resource requirements?

A.

Creating a high-level project plan.

B.

Meeting with each member of the project team to assign tasks.

C.

Designing the new environment.

D.

Setting expectations with the project’s key stakeholders.

E.

Identifying challenges associated with the project.

Full Access
Question # 29

Scenario: A Citrix Architect needs to assess an existing on-premises NetScaler deployment which includes Advanced Endpoint Analysis scans. During a previous security audit, the team discovered that certain endpoint devices were able to perform unauthorized actions despite NOT meeting pre-established criteria.

The issue was isolated to several endpoint analysis (EPA) scan settings.

Click the Exhibit button to view the endpoint security requirements and configured EPA policy settings.

1Y0-440 question answer

Which setting is preventing the security requirements of the organization from being met?

A.

Item 1

B.

Item 4

C.

Item 2

D.

Item 3

Full Access
Question # 30

Scenario: A Citrix Architect needs to assess an existing NetScaler configuration. The customer recently found that members of certain administrator groups were receiving permissions on the production NetScaler appliances that do NOT align with the designed security requirements.

Click the Exhibit button to view the configured command policies for the production NetScaler deployment.

1Y0-440 question answer

To align the command policy configuration with the security requirements of the organization, the _______ for ______should change. (Choose the correct option to complete the sentence.)

A.

command spec; item 3

B.

priority; Item 5

C.

action; Item 1

D.

priority; Item 2

E.

action; Item 4

F.

command spec; Item 6

Full Access
Question # 31

Scenario: A Citrix Architect needs to design a hybrid XenApp and XenDesktop environment which will include as well as resource locations in an on-premises datacenter and Microsoft Azure.

Organizational details and requirements are as follows:

  • Active XenApp and XenDesktop Service subscription
  • No existing NetScaler deployment
  • Minimization of additional costs
  • All users should correct directly to the resource locations containing the servers which will host HDX sessions

Click the Exhibit button to view the conceptual environment architecture.

1Y0-440 question answer

The architect should use___________ in Location A, and should use _______________ in Location B. (Choose the correct option to complete the sentence.)

A.

No NetScaler products; NetScaler ICA Proxy (cloud-licensed)

B.

NetScaler Gateway as a Service; NetScaler ICA Proxy (cloud-licensed)

C.

NetScaler Gateway as a Service; no NetScaler products

D.

No NetScaler products; NetScaler Gateway appliance

E.

NetScaler gateway as a Service; NetScaler ADC (BYO)

Full Access
Question # 32

Scenario: A Citrix Architect needs to assess an existing NetScaler Gateway deployment. During the assessment, the architect collected key requirements for VPN users, as well as the current session profile settings that are applied to those users.

Click the Exhibit button to view the information collected by the architect.

1Y0-440 question answer

Which configurations should the architect change to meet all the stated requirements?

A.

Item 4

B.

Item 3

C.

Item 5

D.

Item 2

E.

Item 1

Full Access
Question # 33

Scenario: A Citrix Architect needs to assess an existing Citrix ADC configuration. The customer recently found that members of certain administrator groups were receiving permissions on the production Citrix ADC appliances that do NOT align with the designed security requirements. Click the Exhibit button to view the configured command policies for the production Citrix ADC deployment.

1Y0-440 question answer

To align the command policy configuration with the security requirements of the organization, the__________for________________should change. (Choose the correct option to complete the sentence.)

A.

command spec; Item 6

B.

priority; Item 5

C.

command spec; Item 3

D.

action; Item 4

E.

priority; Item 2

F.

action; Item 1

Full Access
Question # 34

Scenario: Based on a discussion between a Citrix Architect and a team of Workspacelab members, the MPX Logical layout for Workspacelab has been created across three (3) sites.

The requirements captured during the design discussion held for a NetScaler design project are as follows:

  • Two (2) pairs of NetScaler MPX appliances deployed in the DMZ and internal network.
  • High Availability will be accessible for each NetScaler MPX
  • The external NetScaler MPX appliance will be deployed in multi-arm mode.
  • The internal NetScaler MPX will be deployed in single-arm mode wherein it will be connected to Cisco ACI Fabric.
  • All three (3) Workspacelab sites: Dc, NDR and DR, will have similar NetScaler configurations and design.

How many NetScaler MPX appliances should the architect deploy at each site to meet the design requirements above?

A.

4

B.

12

C.

6

D.

2

Full Access
Question # 35

Scenario: A Citrix Architect needs to design a new solution within Amazon Web Services (AWS) The architect would like to create a high availability Citrix ADC VPX pair to provide load balancing for applications hosted in the AWS deployment within a single availability zone which will receive traffic arriving from the Internet.

Which configuration should the architect choose to accomplish this?

A.

Two standalone Citrix ADC instances in the AWS marketplace, then deploy them as a cluster in the AWS management console

B.

A Citrix ADC AWS-VPX Cluster using a Citrix CloudFormation template in the AWS marketplace, then deploy it to create an Active-Passive high availability pair

C.

Two standalone Citrix ADC instances in the AWS marketplace, then deploy them as an Active-Passive high availability pair in the AWS management console

D.

Two standalone Citrix ADC instances in the AWS marketplace, deploy them in the AWS management console, then use an AWS Elastic Load Balancing load balancer to distribute client traffic across both instances

E.

Two Single AMI Citrix CloudFormation templates in the AWS marketplace then configure a high availability pair

Full Access
Question # 36

Scenario: A Citrix Architect needs to conduct a capabilities assessment for an organization that wants to create a new Citrix ADC deployment. One of the

organization's core business drivers is to ensure that key applications are always available to users.

Which capabilities must the architect verify to assess if the requirement is feasible with the current infrastructure?

A.

Undocumented environment

B.

issues image management processes

C.

Disaster recovery and implementation

D.

Training and certification of support staff and end users

E.

Current Active Directory and DNS environment

Full Access
Question # 37

Scenario: A Citrix Architect needs to design a hybrid XenApp and XenApp and XenDesktop environment which will include Citrix Cloud as well as resource locations in on-premises datacenter and Microsoft Azure.

Organizational details and requirements are as follows:

  • Active XenApp and XenDesktop Service subscription
  • No existing NetScaler deployment
  • About 3,000 remote users are expected to regularly access the environment
  • Multi-factor authentication should be used for all external connections
  • Solution must provide load balancing for backend application servers
  • Load-balancing services must be in Location B

Click the Exhibit button to view the conceptual environment architecture.

1Y0-440 question answer

The architect should use ________ in Location A, and should use _________ in Location B. (Choose the correct option to complete the sentence.)

A.

Citrix Gateway as a Service, no NetScaler products

B.

No Citrix products, Citrix ADC (BYO)

C.

Citrix Gateway as a Service, Citrix ADC (BYO)

D.

No Citrix products, Citrix ICA Proxy (cloud-licensed)

E.

Citrix Gateway as a Service, Citrix ICA Proxy (cloud-licensed)

F.

No Citrix products; Citrix Gateway appliance

Full Access
Question # 38

Scenario: A Citrix Architect needs to design a hybrid Citrix Virtual App and Citrix Virtual Desktop environment which will include Citrix Cloud as well as resource locations in an on-premises datacenter and Microsoft Azure.

Organizational details and requirements are as follows:

  • Active Citrix Virtual App and Citrix Virtual Desktops Service subscription
  • No existing NetScaler deployment
  • Global Server Load Balancing is used to direct connection requests to Location B, if the StoreFront server in Location B fails, connections should be directed to Location A.

Click the Exhibit button to view the conceptual environment architecture.

1Y0-440 question answer

The architect should use _____ in Location A, and should use ________ in Location B. (Choose the correct option to complete the sentence.)

A.

Citrix ADC (BYO); Citrix gateway appliance

B.

Citrix ADC (BYO); No Citrix products

C.

Citrix ADC (BYO); Citrix ADC (BYO)

D.

Citrix Gateway appliance; Citrix Gateway appliance

E.

Citrix Gateway appliance; Citrix ADC (BYO)

Full Access
Question # 39

Scenario: A Citrix Architect and a team of Workspacelab members met to discuss requirements during the design discussion for a Citrix ADC design project. Specifically, the existing Citrix ADC Configuration must be modified to meet the following authentication conditions:

• Provide users with domain drop-down page

• If the users select workspacelab.com. perform single factor authentication using LDAP

• It the users select AAATM.COM, perform two factor authentication using LDAP and RADIUS

• If the users select NSI-TEST. COM. perform SAML authentication using ADFS

What should the architect use to bind the AAA virtual server to the Citrix Gateway virtual server?

A.

302 based redirect

B.

401 based binding

C.

Form based binding

D.

Authentication Profile

Full Access
Question # 40

Scenario: A Citrix Architect is asked by management at the Workslab organization to review their existing configuration and make the necessary upgrades. The architect recommends small changes to the pre-existing NetScaler configuration. Currently, the NetScaler MPX devices are configured in a high availability pair, and the outbound traffic is load-balanced between two Internet service providers 9ISPs). However, the failover is NOT happening correctly.

The following requirements were discussed during the design requirements phase:

  • The return traffic for a specific flow should be routed through the same path while using Link Load Balancing.
  • The link should fail over if the ISP router is up and intermediary devices to an ISP router are down.
  • Traffic going through one ISP router should fail over to the secondary ISP, and the traffic should NOT flow through both routers simultaneously.

What should the architect configure with Link Load balancing (LLB) to meet this requirement?

A.

Net Profile

B.

Mac-based forwarding option enabled.

C.

Resilient deployment mode

D.

Backup route

Full Access
Question # 41

A Citrix Architect can execute a configuration job using a DeployMasterConfiguration template on a Citrix ADC____deployed________. (Choose the correct option to complete sentence:

A.

MPX; In high availability

B.

CPX: without partitions

C.

CPX; In high availability

D.

MPX; as a cluster Instance

E.

SDX; with more than 6 partitions

Full Access
Question # 42

Which markup language can a Citrix use along with NITRO API to create a StyleBook?

A.

GML

B.

XML

C.

HTML

D.

YAML

Full Access
Question # 43

Which NetScaler Management and Analytics System (NMAS) utility can a Citrix Architect utilize to verify the configuration template created by the NMAS StyleBook, before actually executing it on the NetScaler?

A.

Dry Run

B.

configpack

C.

NITRO API

D.

configcheck

Full Access
Question # 44

Scenario: A Citrix Architect has deployed load balancing for SharePoint 2010 on a Citrix ADC instance. While editing the document, the architect observed the error displayed below:

Sorry, we couldn't open 'https://sharepointcs.emea.in/Shared Documents/Citrix Enhancement Request Form.doc'

After troubleshooting, the architect discovers the issue. When a user opens a document, it opens in the browser, but while editing the document, thd session is transferred from the browser to the Word application During this time, the cookies should be transferred from the browser to the Word application.

Which two configurations should the architect modify to ensure that the cookies are shared between the browser and non-browser applications? (Choose two.)

A.

Enable Persistent Cookie

B.

Disable Persistent Cookie

C.

Set HTTPOnly Cookie to NO

D.

Set the NSC_AAAC cookie with HTTPOnly Flag

E.

Set lb vserver -persistenceType COOKIEINSERT

F.

Set HTTPOnly Cookie to Yes

Full Access
Question # 45

Scenario: A Citrix Architect has deployed two MPX devices, 12.0.53.13 nc and MPX 11500 models, in a high availability (HA) pair for the Workspace labs team. The deployment method is two-arm. and the devices are installed behind a CISCO ASA 5585 firewall. The architect enables the following features on the Citrix ADC devices: Content Switching. SSL Offloading, Load Balancing, Citrix Gateway, Application Firewall in hybrid security, and Appflow. All are enabled to send monitoring information to Citrix Application Delivery Management 12.0.53.13 nc build. The architect is preparing to configure load balancing for Microsoft Exchange 2016 server.

The following requirements were discussed during the implementation:

  • All traffic needs to be segregated based on applications, and the fewest number of IP addresses should be utilized during the configuration.
  • All traffic should be secured, and any traffic coming into HTTP should be redirected to HTTPS.
  • Single Sign-on should be created for Microsoft Outlook web access (OWA).
  • Citrix ADC should recognize Uniform Resource Identifier (URI) and close the session to Citrix ADC, when users hit the Logoff button in Microsoft Outlook web access.
  • Users should be able to authenticate using user principal name (UPN).
  • The Layer 7 monitor should be configured to monitor the Microsoft Outlook web access servers, and the monitor probes must be sent on SSL.

Which Responder policy can be utilized to redirect the users from http://mail.citrix.com to https://mail.citrix.com/owa ?

A.

add responder action Act redirect ""https://mail.citrix.com/owa/ "" -responseStatusCode 302 add responder policy pol "http.REQ.URL.PATH_AND_QUERY.EQ("/")" Act

B.

add responder action Act redirect ""https://mail.citrix.com/owa/ "" -responseStatusCode 307 add responder policy pol "HTTP.REQ.IS_NOTVALID Act

C.

add responder action Act redirect ""http://mail.citrix.com/owa/ "" -responseStatusCode 302 add responder policy pol "HTTP.REQ.IS_NOTVALID Act

D.

add responder action Act redirect ""http://mail.citrix.com/owa/ "" -responseStatusCode 302 add responder policy pol "http.REQ.URL.PATH_AND_QUERY.EQ("/")" Act

Full Access