Labour Day Sale Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: scxmas70

1Y0-241 Exam Dumps - Deploy and Manage Citrix ADC with Traffic Management

Question # 4

A Citrix Administrator needs to configure a rate-limiting policy setting DNS requests to a threshold of 1,000 per second.

Which command does the administrator need to run to correctly configure this policy?

A.

HTTP.REQ.LIMIT()

B.

SYS.CHECK.LIMIT()

C.

SYS.CHECK.LIMIT() || CONNECTION.IP.LIMIT()

D.

SYS.CHECK.LIMIT() || HTTP.REQ.LIMIT()

Full Access
Question # 5

Scenario: A company has three departments with proprietary applications that need to be load balanced on a Citrix ADC. The three department managers would like to use the same IP address to access their individual applications. This would mean configuring three load-balanced vServers, all using the same IP address.

What can the Citrix Administrator configure for this scenario?

A.

Three SNIPs with the same IP address on a Citrix ADC

B.

Three different Citrix ADCs that use the same IP address

C.

Three different admin partitions that allow use of the same IP address for each load-balanced vServer on a Citrix ADC

D.

Three different load-balanced vServers with three different IP addresses on a Citrix ADC

Full Access
Question # 6

Which Citrix ADC platform offers an out-of-the-box multi-tenant solution?

A.

VPX

B.

SDX

C.

MPX

D.

CPX

Full Access
Question # 7

In an SSL offload deployment, which policy will allow a Citrix Administrator to modify all URLs in the response body from "http:// " to "https:// "?

A.

> add rewrite action Act1 replace_all "HTTP.RES.BODY(200000)" "\"http://\ "" -pattern "https:// "

> add rewrite policy Pol1 trueAct1 NOREWRITE

B.

> add rewrite action Act1 replace_all "HTTP.RES.BODY(200000)" "\"http:\"" -pattern "\https://\ "

> add rewrite policy Pol1 trueAct1 NOREWRITE

C.

> add rewrite action Act1 replace_all "HTTP.RES.BODY(200000)" "\"https //\"" -pattern "http:// "

> add rewrite policy Pol1 trueAct1 NOREWRITE

D.

> add rewrite action Act1 replace_all "HTTP.RES.BODY(200000)" "\"https:\"" -pattern "http:// "

> add rewrite policy Pol1 trueAct1 NOREWRITE

Full Access
Question # 8

Scenario: Users are trying to access https://cs.mycompany.com, but are receiving the error below:

HTTP 503 Service Unavailable

What can a Citrix Administrator change in the Citrix ADC configuration to fix this?

A.

Enable the content switching feature.

B.

Disable the spillover redirect URL.

C.

Bind a certificate.

D.

Bind the default load-balancing vServer.

Full Access
Question # 9

Scenario:

POLICY 1:

add rewrite action ACT_1 corrupt_http_header Accept-Encoding

add rewrite policy POL_1 HTTPS.REQ.IS_VALID ACT_1

POLICY 2:

add rewrite action ACT_2 insert_http_header Accept-Encoding “\”identity\””

add rewrite policy POL_2 “HTTP.REQ.IS_VALID “ ACT_2

How can a Citrix Administrator successfully bind the above rewrite policies to the load-balancing vServer

lb_vsrv so that POL_2 is evaluated after POL_2 is evaluated?

A.

bind lb vServer lb_vsrv –policyName POL_1 –priority 110 –gotoPriorityExpression NEXT –type REQUEST

bind lb vServer lb_vsrv –policyName POL_2 –priority 100 –gotoPriorityExpression END –type REQUEST

B.

bind lb vServer lb_vsrv –policyName POL_1 –priority 90 –gotoPriorityExpression NEXT –type REQUEST

bind lb vServer lb_vsrv –policyName POL_2 –priority 100 –gotoPriorityExpression END –type REQUEST

C.

bind lb vServer lb_vsrv –policyName POL_1 –priority 90 –gotoPriorityExpression END –type REQUEST

bind lb vServer lb_vsrv –policyName POL_2 –priority 80 –gotoPriorityExpression NEXT –type REQUEST

D.

bind lb vServer lb_vsrv –policyName POL_1 –priority 90 –type REQUEST

bind lb vServer lb_vsrv –policyName POL_2 –priority 100 –type REQUEST

Full Access
Question # 10

Which Citrix ADC monitor can a Citrix Administrator use to check the authentication service of the Active Directory (AD) domain controller?

A.

An LDAP monitor with the LDAP Script Name, Configured Base DN, Bind DN, Filter, Attribute and Password parameters in the basic parameters.

B.

A ping monitor with the IP address of the AD domain controller in the special parameters

C.

A MYSQL-ECV monitor with the Base DN, Bind DN, Filter, Attribute, and Password parameters configured in the basic parameters

D.

A TCP monitor with the LDAP Base DN configured in the basic parameters.

Full Access
Question # 11

Scenario: While attempting to access web server that is load balanced by a Citrix ADC using HTTPS, a user receives the message below.

SSL/TLS error: You have not chosen to trust “Certificate Authority” the issuer of the server’s security certificate.

What can a Citrix Administrator do to prevent users from viewing this message?

A.

Ensure that users have the certificate’s private key.

B.

Ensure that users have the certificate’s public key.

C.

Ensure that the server certificate is linked to its respective intermediate and root certificates.

D.

Ensure that users have the server certificate installed.

Full Access
Question # 12

What is the first thing a Citrix Administrator should develop when creating a server certificate for Citrix ADC to secure traffic?

A.

A private key

B.

A certificate revocation list (CRL)

C.

A certificate signing request (CSR)

D.

A certificate key-pair

Full Access
Question # 13

What can a Citrix Administrator use to restrict access to the Citrix ADC management IP (NSIP) address?

A.

Command policy

B.

Access Control List (ACL)

C.

Authentication policy

D.

Authorization policy

Full Access
Question # 14

Scenario: A Citrix Administrator configured a global server load balancing (GSLB) setup for internal and external users using the same host name. For internal users, cvad.citrite.net should go to the Citrix StoreFront site; for external users, it should connect to the Citrix ADC Gateway VPN site.

Which feature should the administrator configure to accomplish this?

A.

DNS Preferred Location

B.

DNS Record

C.

DNS View

D.

DNS Proxy

Full Access
Question # 15

Scenario: A Citrix Administrator downloaded and deployed Citrix Application Delivery Management (ADM) in an environment consisting of six Citrix ADCs and 100 virtual servers. When viewing the Citrix ADM console, the administrator sees only 30 virtual servers.

Why is the administrator unable to see all 100 virtual servers?

A.

The nsroot passwords are NOT the same across all the Citrix ADCs.

B.

Citrix ADM is using a free license.

C.

Additional Citrix ADM systems need to be deployed to see all virtual servers.

D.

The Citrix ADC and Citrix ADM firmware versions are NOT the same.

Full Access
Question # 16

Scenario: A Citrix Administrator needs to integrate LDAP for Citrix ADC system administration using current active directory (AD) groups. The administrator created the group on the Citrix ADC, exactly matching the group name in LDAP.

What can the administrator bind to specify the permission level and complete the LDAP configuration?

A.

A command policy to the group

B.

A nested group to the new group

C.

Users to the group on the Citrix ADC

D.

An authentication, authorization, and auditing (AAA) action to the group

Full Access
Question # 17

Scenario: A Citrix Administrator is concerned about the number of health checks the Citrix ADC is sending to backend resources. The administrator wants to find a way to remove health checks from specific bound services.

How can the administrator accomplish this?

A.

Unbind the current monitor.

B.

Use the no-monitor option.

C.

Use service groups to minimize health checks.

D.

Use reverse-condition monitoring.

Full Access
Question # 18

If a policy evaluates as_________________ a Citrix ADC performs the action assigned to the ____________ condition and stops further policy evaluation.

A.

TRUE; FALSE

B.

UNDEFINED; TRUE

C.

UNDEFINED; FALSE

D.

UNDEFINED; UNDEFINED

Full Access
Question # 19

Scenario: A Citrix Administrator made changes to a Citrix ADC, deleting parts of the configuration and saving

some new ones. The changes caused an outage that needs to be resolved as quickly as possible. There is no Citrix ADC backup.

What does the administrator need to do to recover the configuration quickly?

A.

Restart the Citrix ADC.

B.

Restore from the revision history.

C.

Run saved versus running configuration.

D.

Run highly availability (HA) file synchronization.

Full Access
Question # 20

Scenario: A Citrix Administrator currently manages a Citrix ADC environment for a growing retail company that may soon double its business volume. A Citrix ADC MPX 5901 is currently handling web and SSL transactions, but is close to full capacity. Due to the forecasted growth, the administrator needs to find a cost-effective solution.

What cost-effective recommendation can the administrator provide to management to handle the growth?

A.

The addition of another MPX 5901 appliance

B.

A hardware upgrade to a Citrix ADC MPX 8905

C.

A license upgrade to a Citrix ADC MPX 5905

D.

A hardware upgrade to a Citrix ADC SDX 15020

Full Access
Question # 21

Scenario: A Citrix Administrator configured a responder policy as follows:

> add responder action Picture10Action redirect "\"http://\ " + http.req.hostname + http.req.url + \"/picture10.html\"" -bypassSafetyCheck YES

> add responder policy Picture10Policy "http.req.url.eq(\"/mywebsite\")" Picture10Action

> bind responder global Picture10Policy 1 END -type OVERRIDE

What will be the effect of this configuration?

A.

The URL http://www.mywebsite.com will be overwritten with /picture10.html.

B.

Clients accessing http://www.mywebsite.com/ will have /picture10 html appended to the URL.

C.

Clients accessing http://www.mywebsite.com/picture10.html will be overwritten with http://www.mywebsite com/.

D.

The file Picture10 will be downloaded to a local drive when directly accessing http://www.mywebsite.com/picture10.html.

Full Access
Question # 22

Scenario: A Citrix Administrator manages a Citrix SDX appliance with several instances configured. The administrator needs to enable Layer 2 mode on two instances.

When using a shared network interface, what must the administrator do to ensure that traffic flows correctly?

A.

Ensure Layer 3 and Layer 2 modes are enabled.

B.

Enable tagging on all interfaces.

C.

Enable MAC-based forwarding (MBF) mode.

D.

Disable Layer 2 mode on a Citrix ADC instance.

Full Access
Question # 23

A Citrix Administrator deploys a new Citrix ADC MPX appliance in the demilitarized zone (DMZ), with one interface in the DMZ and the other on the internal network.

In which mode should the administrator deploy the Citrix ADC?

A.

One-arm

B.

Two-arm

C.

Transparent

D.

Forward proxy

Full Access
Question # 24

Scenario: A Citrix Administrator gives permissions to team members to access their own admin partition. This will allow them to add resources for different departments and manage them without making changes to the default Citrix ADC partition and configuration.

One team member typing to use the command line interface (CLI) to troubleshoot an authentication issue could NOT use aaad.debug. However, the team member has full permissions on the admin partition.

What can be the cause of this issue?

A.

The team member is NOT using the CLI correctly.

B.

The team member needs to troubleshoot the issue from the GUI.

C.

The team member does NOT have permission to use the CLI.

D.

The team member does NOT have shell access by design.

Full Access
Question # 25

A Citrix Administrator needs to configure a rate-limiting policy setting DNS requests to a threshold of 1,000 per second.

Which set of commands does the administrator need to run to correctly configure and enable this policy?

A.

> add stream selector DNSSelector1 client.udp.dns.domain

> add ns limitIdentifier DNSLimitIdentifier1 -threshold 5 -timeSlice 1000 -selectorName DNSSelector1

> add dns policy DNSLimitPolicy1 " sys.check_limit(\"DNSLimitIdentifier1\")" -preferredLocation "North America.US.TX.Dallas.. "

> bind dns global DNSLimitPolicy1 5

B.

> add stream selector DNSSelector1 client.udp.dns.domain

> add ns limitIdentifier DNSLimitIdentifier1 -threshold 1000 -timeSlice 1000 -selectorName DNSSelector1

> add dns policy DNSLimitPolicy1 " sys check_limit(\"DNSLimitIdentifier1\")" -preferredLocation "North America.US.TX.Dallas.. "

> bind dns global DNSLimitPolicy1 5

C.

> add stream selector DNSSelector1 client.udp.dns.domain

> add ns limitIdentifier DNSLimitIdentifier1 -threshold 5 -timeSlice 1000 -selectorName DNSSelector1

> add dns policy DNSLimitPolicy1 " sys.check_limit(\"DNSLimitIdentifier1\")" -preferredLocation "North America.US.TX.Dallas.. "

D.

> add stream selector DNSSelector1 client.udp.dns.domain

> add ns limitIdentifier DNSLimitIdentifier1 -threshold 1000 -timeSlice 1000 -selectorName DNSSelector1

> add dns policy DNSLimitPolicy1 " sys check_limit(\"DNSLimitIdentifier1\")" -preferredLocation "North America.US.TX.Dallas.. "

Full Access
Question # 26

Which step can a Citrix Administrator take to use default compression policies?

A.

Select the compression algorithm (gzip/deflate/identity).

B.

Disable the Citrix ADC compression feature at a global level.

C.

Enable compression on the associated bound services.

D.

Bind the default compression policies to the vServer.

Full Access
Question # 27

When a Citrix ADC high availability (HA) pair failover occurs, by what method does the Citrix ADC communicate to the network switches and routers that IP-to-MAC address bindings have changed?

A.

Reverse ARP (RARP) to update the network devices

B.

MAC-based forwarding (MBF) to update the routers

C.

Proxy ARP to update the network devices

D.

Gratuitous ARPs (GARPs) to update the network devices

Full Access
Question # 28

Scenario: A Citrix Administrator installed the compression feature on the web servers. To offload the compression on the Citrix ADC, the administrator configured the Citrix ADC appliance to remove the ‘Accept Encoding’ header from all HTTP client requests. However, the administrator observes that data is NOT being compressed by the Citrix ADC, even though the ‘Accept Encoding’ header is being removed from all requests.

What could be the cause of this issue?

A.

The rewrite policy is bound at an incorrect bind point

B.

The servers are automatically compressing all responses

C.

The compression policy needs to be reconfigured

D.

Servercmp is disabled on the Citrix ADC

Full Access
Question # 29

Scenario: A Citrix Administrator would like to grant access to a Junior Citrix Administrator on the Citrix ADC.

The administrator would like to grant full access to everything except the following:

  • Shell
  • User configuration
  • Partition configuration

Which preexisting command policy would meet the needs of this scenario?

A.

Sysadmin

B.

Operator

C.

Network

D.

Superuser

Full Access
Question # 30

What is the effect of the “set cs vServer-CS-1 –redirectURL http://www.newdomain.com/mysite/” command?

A.

If the vServer-CS-1 encounters a high connection rate, then users will be redirected to http://www.newdomain.com/mysite/.

B.

If the status of vServer-CS-1 is DOWN, then users will be redirected to http://www.newdomain .com/mysite/.

C.

All the requests to vServer-CS-1 will be redirected to http://www.newdomain.com/mysite/.

D.

All the requests without URL path/mysite/ will be redirected to http://www.newdomain.com/mysite/.

Full Access
Question # 31

Which setting is responsible for reducing the server load, improving response time, and increasing the number of SSL transactions per second on an SSL vServer?

A.

SSLv3

B.

Session timeout

C.

SSLv2 redirect

D.

Session reuse

Full Access
Question # 32

A Citrix Administrator needs to use a client’s IP address as the source IP address for Citrix ADC-to-server connections.

Which Citrix ADC mode can the administrator use to meet this requirement?

A.

USNIP

B.

Layer 2

C.

Layer 3

D.

USIP

Full Access