A Citrix Administrator receives complaints from some users that authentication for the Citrix ADC Gateway site fails, Which tool can the administrator use to find data regarding time of failure and a list of users facing this issue?
A. Gateway Insight
B. Security Insight
C. HDX Insight
D. Web Insight
正解:A
質問 2:
Scenario: The Citrix ADC has connections to a large number of VPNs. The network engineer wants to minimize the number of ARP requests. Which feature should the network engineer enable to minimize ARP requests?
A. TCP Buffering
B. MAC based forwarding
C. Use Source IP
D. Edge Configuration
正解:B
質問 3:
Scenario: A Citrix Administrator needs to implement a Content Filter policy to ensure the following conditions are met:
* The user with source IP 10.100.32.211 should NOT be allowed to access the vserver 10.10.10.1.
* All other users from subnet 10.100.32.0/24 should have access to the
vserver 10.10.10.1.
* Access to the vserver should be blocked for all the other users.
Which policy expression will meet this requirement if the policy action is RESET and the policy is bound to the vserver (VIP:10.10.10.1)?
A. REQ.IP.SOURCEIP != 10.100.32.211 || REQ.IP.SOURCEIP != 10.100 32.211 -netmask
255.255.255.0
B. REQ.IP.SOURCEIP == 10.100.32.211 && REQ.IP.SOURCEIP != 10.100.32.0 -netmask
255.255.255.0
C. REQ.IP.SOURCEIP != 10.100.32.211 && REQ.IP.SOURCEIP == 10.100.32.0 -netmask
255.255.255.0
D. REQ.IP.SOURCEIP == 10.100.32.211 || REQ.IP.SOURCEIP != 10.100.32.0 -netmask
255.255.255.0
正解:D
解説: (Pass4Test メンバーにのみ表示されます)
質問 4:
Scenario: A network engineer needs to configure Citrix Citrix ADC to provide Access Gateway services to VLAN 2 using interface 1/1 only, while also using interface 1/2 to provide load balancing services to VLAN 3. How could this result be achieved?
A. Configure policy-based routing using the Interface option as a filter.
B. Disable static route advertisement.
C. Disable layer 2 mode
Create 2 untagged VLANs - VLAN 2 and VLAN 3
Bind VLAN 2 to Interface 1/1
Bind VLAN 3 to Interface 1/2
D. Enable Layer 3 mode
Create a Channel Interface using Interface 1/1 and 1/2 Create 2 VMACs
Bind a VMAC to interface 1/1 and 1/2
正解:C
質問 5:
Which step could a network engineer take to prevent brute force logon attacks?
A. Configure the Cache redirection Policies.
B. Enable the AAA Application feature.
C. Enable the Rate Limiting feature.
D. Configure the Access Gateway Policies.
正解:C
質問 6:
Company policy states that all passwords should travel the network in encrypted packets except SNMP. Which command should the network engineer execute to comply with this policy?
A. set ns ip 10.20.30.40 -ssh disabled -telnet disabled -gui enabled
B. set ns ip 10.20.30.40 -gui secureonly -ssh enabled -restrictaccess enabled
C. set ns ip 10.20.30.40 -telnet disabled -gui secureonly -ftp disabled
D. set ns ip 10.20.30.40 -mgmtaccess disabled -restrictaccess enabled
正解:C
質問 7:
Why would an engineer want to specify a TCP Profile for a specific service group?
A. To adjust the TCP settings for traffic to and from that specific service group.
B. To enable features like use source IP, TCP keep alive and TCP buffering for a specific service group.
C. To enable use of features like SSL over TCP for that specific service group.
D. To use a specific SNIP for traffic to the back-end servers in that service group.
正解:A
北见** -
簡単に1Y0-240試験を受験します。1Y0-230を購入して再度受験します。