
Citrix 1Y0-231 Exam Dumps [2022] Practice Valid Exam Dumps Question
1Y0-231 Dumps - Grab Out For [NEW-2022] Citrix Exam
Primary Audiences
The targeted audiences for this evaluation are the specialists who have worked in the areas of Citrix ADC 13 and Citrix Gateway. Then, employees working in the job profiles of System Engineers, Citrix Administrators, Network Engineers & Administrators, and System Administrators are also for this certification.
NEW QUESTION 31
Scenario: While performing a disaster recovery test, a Citrix Administrator decides to failover the Citrix ADC high availability (HA) pair appliances. The administrator notices that the failover is NOT working as expected, and the secondary Citrix ADC is NOT taking over as primary. The administrator suspects that networking issues may be causing the failure.
What could be the cause of this issue?
- A. HA monitoring is enabled on an interface of the secondary node that shows as ENABLED, DOWN.
- B. The Independent Network Configuration (INC) mode is enabled on the primary node.
- C. HA heartbeats are only seen on some enabled interfaces of the secondary node.
- D. HA monitoring is enabled on a disabled interface of the primary node.
Answer: A
NEW QUESTION 32
What can a Citrix Administrator configure to filter IPv4 addresses?
- A. Citrix Web App Firewall
- B. Data set
- C. Pattern set
- D. URL set
Answer: A
NEW QUESTION 33
Scenario: A Citrix Administrator suspects an attack on a load-balancing virtual server (IP address
192.168.100.25). The administrator needs to restrict access to this virtual server for 10 minutes.
Which access control list (ACL) will accomplish this?
- A. add ns acl rule1 DENY -destIP 192.168.100.25 -TTL 600000
- B. add simpleacl rule1 DENY -srcIP 192.168.100.25 -TTL 600
- C. add simpleacl rule1 DENY -srcIP 192.168.100.25 -TTL 600000
- D. add ns acl rule1 DENY -destIP 192.168.100.25 -TTL 600
Answer: B
NEW QUESTION 34
Which feature can a Citrix Administrator use to create a consistent set of front-end SSL parameters across multiple SSL virtual servers?
- A. SSL policy
- B. SSL multiplexing
- C. SSL profile
- D. SSL bridge
Answer: C
Explanation:
Explanation/Reference: https://docs.citrix.com/en-us/citrix-adc/current-release/ssl/ssl-profiles.html
NEW QUESTION 35
While applying a new Citrix ADC device, a Citrix Administrator notices an issue with the time on the appliance.
Which two steps can the administrator perform to automatically adjust the time? (Choose two.)
- A. Add an SNMP manager.
- B. Configure an NTP monitor.
- C. Enable NTP synchronization.
- D. Add an SNMP trap.
- E. Add an NTP server.
Answer: B,C
NEW QUESTION 36
Scenario: While attempting to access a web server that is load-balanced by a Citrix ADC using HTTPS, a user receives the message below:
SSL/TLS error: You have not chosen to trust "Certificate Authority" the issuer of the server's security certificate.
What can a Citrix Administrator do to prevent users from getting this message?
- A. Ensure that users have the certificate's private key.
- B. Ensure that users have the certificate's public key.
- C. Ensure that users have the server certificate installed.
- D. Ensure that the server certificate is linked to its respective intermediate and root certificates.
Answer: D
NEW QUESTION 37
Scenario: A Junior Citrix Administrator needs to create a content switching virtual server on a Citrix ADC high availability (HA) pair. The NSIP addresses are 192 168.20.10 and 192.168.20.11. The junior administrator connects to NSIP address 192.168.20.10 and saves the changes.
The following day, a Senior Citrix Administrator tests the new content switching virtual server, but it is NOT working. The senior administrator connects to the HA pair and discovers that everything the junior administrator configured is NOT visible.
Why has the Citrix ADC lost the newly added configurations?
- A. Both Citrix ADCs in the HA pair restarted overnight.
- B. The Citrix ADC appliances have different firmware versions.
- C. The junior administrator connected to the NSIP of the secondary Citrix ADC in the HA pair.
- D. The junior administrator made the changes and did NOT force a failover to save the configurations.
Answer: A
NEW QUESTION 38
If a user device does NOT comply with a company's security requirements, which type of policy can a Citrix Administrator apply to a Citrix Gateway virtual server to limit access to Citrix Virtual Apps and Desktops resources?
- A. Responder
- B. Traffic
- C. Session
- D. Authorization
Answer: C
Explanation:
Explanation/Reference: https://www.citrix.com/content/dam/citrix/en_us/documents/products-solutions/creating-and- enforcing-advanced-access-policies-with-xenapp.pdf
NEW QUESTION 39
A Citrix Administrator has received a low disk space alert for /var on the Citrix ADC.
Which type of files should the administrator archive to free up space?
- A. DNScache
- B. Nslog
- C. Syslog
- D. Nsconfig
Answer: B
NEW QUESTION 40
Which four steps should a Citrix Administrator take to configure SmartAccess? (Choose four.)
- A. Enable Citrix Workspace control within StoreFront.
- B. Ensure that the Callback URL is defined in the Citrix Gateway configuration within Store Front.
- C. Ensure that ICA Only is checked on the Citrix Gateway virtual server.
- D. Ensure that the SmartAccess filter name on the Delivery Group matches the name of the Citrix Gateway policy.
- E. Ensure that the SmartAccess filter name on the Delivery Group matches the name of the Citrix Gateway virtual server.
- F. Execute "set-BrokerSite -TrustRequestsSentToTheXMLServicePort $True" on any Citrix Delivery Controller in the Site.
- G. Ensure that ICA Only is unchecked on the Citrix Gateway virtual server.
Answer: B,E,F,G
NEW QUESTION 41
Scenario: A Citrix Administrator configured Citrix ADC load balancing to send requests to one of three identical backend servers. Each server handles multiple protocols, and load balancing is set up in round-robin mode. The current load-balancing setup on the Citrix ADC is:
* One load-balancing virtual server with one externally accessible VIP
* One service created for each protocol type
* One server entity for each backend resource
During business hours, the administrator wants to make changes to one backend server without affecting the other servers What is the most efficient way for the administrator to ensure that all traffic is routed away from the server without impeding responses from other resources?
- A. Disable the backend server entity targeted for change.
- B. Disable the backend service entity targeted for change.
- C. Unbind the correct server entity from the load-balancing virtual server.
- D. Disable the load-balancing virtual server.
Answer: C
NEW QUESTION 42
Scenario: A Citrix Administrator needs to configure an authentication workflow on Citrix ADC with the below requirements.
All internal users must use their corporate credentials to authenticate.
Users from partner organizations must be authenticated using their own directory services without replication or a synchronization process.
How can the administrator meet the above requirements while authenticating the users?
- A. Configure nFactor authentication with two LDAP advanced policies and one SAML advanced policy.
- B. Configure two dedicated AAA virtual servers for internal and partner users.
- C. Deploy SAML on Citrix ADC in the service provider (SP) role for users from partner organizations.
- D. Create two LDAP and two SAML authentication policies on the authentication, authorization, and auditing (AAA) virtual server.
Answer: A
NEW QUESTION 43
Which authentication type can a Citrix Administrator use to enable Citrix ADC authentication, authorization, and auditing (AAA) dual-factor authentication from a user's mobile device app?
- A. LOCAL
- B. RADIUS
- C. SAML
- D. LDAP
Answer: D
Explanation:
Explanation/Reference: https://docs.citrix.com/en-us/citrix-adc/current-release/system/authentication-and-authorization-for- system-user/two-factor-authentication-for-system-users-and-external-users.html
NEW QUESTION 44
Which Citrix Gateway feature should a Citrix Administrator configure to allow traffic for specific iOS applications only?
- A. Per app VPN tunnel
- B. Full SSL VPN tunnel for iOS
- C. SmartControl for iOS
- D. Split DNS
Answer: A
NEW QUESTION 45
Scenario: A Citrix Administrator is configuring a new authentication, authorization, and auditing (AAA) virtual server, and the status is DOWN. The administrator makes the below configurations:
add lb vserver lb_vsrv_www HTTP 10.107.149.229 80 -persistenceType NONE -cltTimeout 180 -authn401 ON
-authnVsName SAML_SP
bind lb vserver lb_vsrv_www_ssl Red_srv
bind lb vserver Ib_vsrv_www_ssl Blue_srv
add authentication vserver SAML_SP SSL 10.107.149.230 443 -AuthenticationDomain citrix.lab What should the administrator bind to the virtual server SAML_SP to complete the installation and change the status to UP?
- A. A service
- B. An LDAP policy
- C. An SSL certificate
- D. An AAA policy
Answer: B
NEW QUESTION 46
What can a Citrix Administrator configure to access RDP shortcuts?
- A. Next hop server
- B. Bookmarks
- C. Split tunneling
- D. Intranet applications
Answer: B
NEW QUESTION 47
Which type of policy would a Citrix Administrator use to disable USB redirection?
- A. Auditing
- B. SmartControl
- C. Session
- D. Authorization
Answer: C
NEW QUESTION 48
Scenario: A Citrix Administrator made changes to a Citrix ADC, deleting parts of the configuration and saving some new ones. The changes caused an outage that needs to be resolved as quickly as possible. There is no Citrix ADC backup.
What does the administrator need to do to recover the configuration quickly?
- A. Restore from the revision history.
- B. Restart the Citrix ADC.
- C. Run saved versus running configuration.
- D. Run high availability (HA) file synchronization.
Answer: A
NEW QUESTION 49
Which profile can a Citrix Administrator create to configure a default profile that disables TLSv1?
- A. DTLS
- B. HTTP
- C. TCP
- D. SSL
Answer: D
Explanation:
Explanation/Reference: https://docs.citrix.com/en-us/citrix-adc/current-release/ssl/ssl-profiles/secure-front-end-profile.html
NEW QUESTION 50
A Citrix Administrator needs to integrate an existing certification-based authentication policy into an existing Citrix Gateway virtual server.
Which three steps can the administrator take to accomplish this? (Choose three.)
- A. Enable client authentication on the SSL parameters of the virtual server.
- B. Enable the two-factor option on the existing CERT authentication profile.
- C. Create a CERT authentication policy and bind it to the Citrix Gateway virtual server.
- D. Change the client certificate to mandatory on the SSL parameters of the virtual server.
- E. Bind the existing CERT authentication policy to the Citrix Gateway virtual server.
Answer: A,C,D
NEW QUESTION 51
Scenario: While attempting to access a web server that is load-balanced by a Citrix ADC using HTTPS, a user receives the message below:
SSL/TLS error: You have not chosen to trust "Certificate Authority" the issuer of the server's security certificate.
What can a Citrix Administrator do to prevent users from getting this message?
- A. Ensure that users have the certificate's private key.
- B. Ensure that users have the certificate's public key.
- C. Ensure that users have the server certificate installed.
- D. Ensure that the server certificate is linked to its respective intermediate and root certificates.
Answer: D
Explanation:
Explanation/Reference: https://docs.citrix.com/en-us/citrix-gateway/12-1/citrix-gateway-12.1.pdf
NEW QUESTION 52
A Citrix Administrator deploys a new Citrix ADC MPX appliance in the demilitarized zone (DMZ), with one interface in the DMZ and the other on the internal network.
In which mode should the administrator deploy the Citrix ADC?
- A. Forward proxy
- B. Transparent
- C. Two-arm
- D. One-arm
Answer: A
NEW QUESTION 53
Which profile can a Citrix Administrator create to configure a default profile that disables TLSv1?
- A. DTLS
- B. HTTP
- C. TCP
- D. SSL
Answer: D
NEW QUESTION 54
A Citrix Administrator needs to configure a Citrix ADC high availability (HA) pair with each Citrix ADC in a different subnet.
What does the administrator need to do for HA to work in different subnets?
- A. Turn on HA monitoring on all Interfaces
- B. Turn on Independent Network Configuration (INC) mode
- C. Configure SyncVLAN
- D. Turn on fail-safe mode
Answer: B
NEW QUESTION 55
......
Domain Overview
In general, the official test is divided into 14 sections and each part carries a different weightage. Clearly, the focus of each topic is also different. Let’s give you a quick overview of these exam objectives. A quick overview of Citrix ADC architecture, Citrix ADC hardware, and the functionality of these tools are included in the first scope. As the topics proceed, learners will be able to gather information related to Networking topology for Citrix ADC, Integration for Citrix Virtual Desktops & Apps, Citrix ADC routing, Securing the Citrix ADC, the Configuration of Access Control, High Availability, Load Balancing, AppExpert, Troubleshooting, Citrix Gateway, Authentication, Authorization, Managing Client Connections, Citrix ADC Platforms, SSL Offload, and Customizing Citrix Gateway.
1Y0-231 Exam Dumps PDF Guaranteed Success with Accurate & Updated Questions: https://www.test4sure.com/1Y0-231-pass4sure-vce.html
Pass 1Y0-231 Exam - Real Test Engine PDF with 72 Questions: https://drive.google.com/open?id=1MsggwrPpC27dUCITSBZwudV6mS55mOyV