CCE-N Real Exam Questions and Answers FREE 1Y0-440 Updated on Sep 20, 2021 [Q24-Q42]

Share

CCE-N 1Y0-440 Real Exam Questions and Answers FREE Updated on Sep 20, 2021

1Y0-440 Ultimate Study Guide -  Actual4Exams

NEW QUESTION 24
Scenario: A Citrix Architect needs to assess an existing NetScaler gateway deployment. During the assessment, the architect collects key requirements for different user groups, as well as the current session profile settings that are applied to those users.
Click the Exhibit button to view the information collected by the architect.

Which configuration should the architect make to meet these requirements?

  • A. Create a new session profile and policy.
  • B. Change ICA proxy settings in an existing session profile.
  • C. Change the policy expression in an existing session policy.
  • D. Change the Clientless Access settings in an existing session profile.
  • E. Change the remote Access settings in StoreFront.

Answer: C

 

NEW QUESTION 25
Scenario: A Citrix Architect has configured NetScaler Gateway integration with a XenApp environment to provide access to users from two domains: vendorlab.com and workslab.com. The Authentication method used is LDAP.
Which two steps are required to achieve Single Sign-on StoreFront using a single store? (Choose two.)

  • A. Configure Single sign-on domain in Session profile 'userPrincipalName'.
  • B. Configure SSO Name attribute to 'userPrincipalName' in LDAP Profile.
  • C. Do NOT configure SSO Name attribute in LDAP Profile.
  • D. Do NOT configure sign-on domain in Session Profile.

Answer: B,C

 

NEW QUESTION 26
A Citrix Architect needs to define the architect and operational processes required to implement and maintain the production environment.
In which phase of the Citrix Methodology will the architect define this?

  • A. Manage
  • B. Design
  • C. Deploy
  • D. Assess
  • E. Review
  • F. Define

Answer: B

Explanation:
Explanation/Reference: https://www.slideshare.net/davidmcg/designing-your-xenapp-75-environment

 

NEW QUESTION 27
Scenario: A Citrix Architect needs to assess an existing on-premises NetScaler deployment which includes Advanced Endpoint Analysis scans. During a previous security audit, the team discovered that certain endpoint devices were able to perform unauthorized actions despite NOT meeting pre-established criteria.
The issue was isolated to several endpoint analysis (EPA) scan settings.
Click the Exhibit button to view the endpoint security requirements and configured EPA policy settings.

Which setting is preventing the security requirements of the organization from being met?

  • A. Item 5
  • B. Item 3
  • C. Item 4
  • D. Item 2
  • E. Item 6
  • F. Item 7
  • G. Item 1

Answer: D

 

NEW QUESTION 28
Scenario: Based on a discussion between a Citrix Architect and a team of Workspacelab members, the MPX Logical layout for Workspacelab has been created across three (3) sites.
The requirements captured during the design discussion held for a NetScaler design project are as follows:
* Two (2) pairs of NetScaler MPX appliances deployed in the DMZ and internal network.
* High Availability will be accessible for each NetScaler MPX
* The external NetScaler MPX appliance will be deployed in multi-arm mode.
* The internal NetScaler MPX will be deployed in single-arm mode wherein it will be connected to Cisco ACI Fabric.
* All three (3) Workspacelab sites: Dc, NDR and DR, will have similar NetScaler configurations and design.
How many NetScaler MPX appliances should the architect deploy at each site to meet the design requirements above?

  • A. 0
  • B. 1
  • C. 2
  • D. 3

Answer: B

 

NEW QUESTION 29
Scenario: The Workspacelab team has configured their NetScaler Management and Analytics (NMAS) environment. A Citrix Architect needs to log on to the NMAS to check the settings.
Which two authentication methods are supported to meet this requirement? (Choose two.)

  • A. AAA
  • B. Certificate
  • C. RADIUS
  • D. TACACS
  • E. SAML
  • F. Director

Answer: C,D

 

NEW QUESTION 30
Scenario: More than 10,000 users will access a customer's environment. The current networking infrastructure is capable of supporting the entire workforce of users. However, the number of support staff is limited, and management needs to ensure that they are capable of supporting the full user base.
Which business driver is prioritized, based on the customer's requirements?

  • A. Increase Flexibility
  • B. Reduce Costs
  • C. Simplify Management
  • D. Enable Mobile Work Styles
  • E. Increase Scalability
  • F. Increase Security

Answer: C

 

NEW QUESTION 31
Scenario: A Citrix Architect has deployed an authentication setup with a ShareFile load-balancing virtual server. The NetScaler is configured as the Service Provider and Portalguard server is utilized as the SAML Identity Provider. While performing the functional testing, the architect finds that after the users enter their credentials on the logon page provided by Portalguard, they get redirected back to the Netscaler Gateway page at uri /cgi/samlauth/ and receive the following error.
"SAML Assertion verification failed; Please contact your administrator." The events in the /var/log/ns.log at the time of this issue are as follows:
Feb 23 20:35:21 <local0.err> 10.148.138.5 23/02/2018:20:35:21 GMT vorsb1 0-PPE-0 : default AAATM Message 3225369 0 : "SAML : ParseAssertion:
parsed attribute NameID, value is nameid"
Feb 23 20:35:21 <local0.err> 10.148.138.5 23/02/2018:20:35:21 GMT vorsb1 0-PPE-0 : default AAATM Message 3225370 0 : "SAML verify digest:
algorithms differ, expected SHA1 found SHA256"
Feb 23 20:35:44 <local0.err> 10.148.138.5 23/02/2018:20:35:44 GMT vorsb1 0-PPE-0 : default AAATM Message 3225373 0 : "SAML : ParseAssertion:
parsed attribute NameID, value is named
Feb 23 20:35:44 <local0.err> 10.148.138.5 23/02/2018:20:35:44 GMT vorsb1 0-PPE-0 : default AAATM Message 3225374 0 : "SAML verify digest:
algorithms differ, expected SHA1 found SHA256"
Feb 23 20:37:55 <local0.err> 10.148.138.5 23/02/2018:20:37:55 GMT vorsb1 0-PPE-0 : default AAATM Message 3225378 0 : "SAML : ParseAssertion:
parsed attribute NameID, value is nameid"
Feb 23 20:37:55 <local0.err> 10.148.138.5 23/02/2018:20:37:55 GMT vorsb1 0-PPE-0 : default AAATM Message 3225379 0 : "SAML verify digest:
algorithms differ, expected SHA1 found SHA256"
What should the architect change in the SAML action to resolve this issue?

  • A. Signature Algorithm to SHA 1
  • B. The Digest Method to SHA 1
  • C. The Digest Method to SHA 256
  • D. Signature Algorithm to SHA 256

Answer: A

 

NEW QUESTION 32
Scenario: The following NetScaler environment requirements were discussed during a design meeting between a Citrix Architect and the Workspacelab team:
* All traffic should be secured, and any traffic coming into HTTP should be redirected to HTTPS.
* Single Sign-on should be created for Microsoft Outlook web access (OWA).
* NetScaler should recognize Uniform Resource Identifier (URI) and close the session to NetScaler when users hit the Logoff button in Microsoft Outlook web access.
* Users should be able to authenticate using user principal name (UPN).
* The Layer 7 monitor should be configured to monitor the Microsoft Outlook web access servers and the monitor probes must be sent on SSL.
Which method can the architect use to redirect the user accessing https://mail.citrix.com to
https://mail.citrix.com?

  • A. add responder action act redirect "https://mail.citrix.com" -responseStatusCode 302add responder policy pol HTTP.REQ.IS_VALID act
  • B. add responder action act redirect "\https://\ + HTTP REQ.HOSTNAME.HTTP_URL_SAFE + HTTP.REQ.URL_PATH_AND_QUERY.HTTP_URL_SAFE\n\n" -responseStatusCode 302 add responder policy pol HTTP.REQ.IS_VALID act
  • C. add lb server test SSL 10.107.149.243.80 -persistenceType NONE -cltTimeout 180 -redirectFromPort
    80 -httpsRedirectUrl https://mail.citrix.com
  • D. add lb server test SSL 10.107.149.243.443 -persistenceType NONE -cltTimeout 180 -redirectFromPort
    80 -httpsRedirectUrl https://mail.citrix.com

Answer: D

 

NEW QUESTION 33
A Citrix Architect needs to configure advanced features of NetScaler by using StyleBooks as a resource in the Heat service.
What is the correct sequence of tasks to be completed for configuring NetScaler using the Heat stack?

  • A. 1. Install NetScaler Bundle for OpenStack2. Prepare the HOT by using the NetScaler heat resources and NetScaler Network Resource3. Register OpenStack with NMAS4. Deploy the Heat stack5. Add NetScaler instances (Optional)6. Create service packages (Add OpenStack tenants)
  • B. 1. Install NetScaler Bundle for OpenStack2. Deploy the Heat stack3. Register OpenStack with NMAS4.
    Add NetScaler instances (Optional)5. Prepare the HOT by using the NetScaler heat resources and NetScaler Network Resource6. Create service packages (Add OpenStack tenants)
  • C. 1. Install NetScaler Bundle for OpenStack2. Register OpenStack with NMAS3. Add NetScaler instances (Optional)4. Create service packages (Add OpenStack tenants)5. Prepare the HOT by using the NetScaler heat resources and NetScaler Network Resource6. Deploy the Heat stack
  • D. 1. Install NetScaler Bundle for OpenStack2. Add NetScaler instances (Optional)3. Create service packages (Add OpenStack tenants)4. Prepare the HOT by using the NetScaler heat resources and NetScaler Network Resource5. Register OpenStack with NMAS6. Deploy the Heat stack

Answer: A

 

NEW QUESTION 34
Which NetScaler Management and Analytics System (NMAS) utility can a Citrix Architect utilize to verify the configuration template created by the NMAS StyleBook, before actually executing it on the NetScaler?

  • A. configcheck
  • B. configpack
  • C. Dry Run
  • D. NITRO API

Answer: C

 

NEW QUESTION 35
Scenario: A Citrix Architect needs to design a new multi-datacenter NetScaler deployment. The customer wants NetScaler to provide access to various backend resources by using Global Server Load Balancing (GSLB) in an Active-Active deployment.
Click the Exhibit button to view additional requirements identified by the architect.

Which GSLB algorithm or method should the architect use for the deployment, based on the stated requirements?

  • A. Least packets
  • B. least connection
  • C. Static proximity
  • D. Source IP hash
  • E. Dynamic round trip time (RTT)
  • F. Least response time

Answer: F

 

NEW QUESTION 36
Scenario: A Citrix Architect needs to design a new NetScaler Gateway deployment to provide secure RDP access to backend Windows machines.
Click the Exhibit button to view additional requirements collected by the architect during the design discussions.

To meet the customer requirements, the architect should deploy the RDP proxy through _______, using a
_________ solution. (Choose the correct option to complete the sentence.)

  • A. ICAProxy; single gateway
  • B. ICAProxy, stateless gateway
  • C. CVPN; stateless gateway
  • D. CVPN; single gateway

Answer: D

 

NEW QUESTION 37
Scenario: A Citrix Architect has deployed two MPX devices, 12.0.53.13 nc and MPX 11500 models, in high availability (HA) pair for the Workspace labs team. The deployment method is two-arm and the devices are installed behind a CISCO ASA 5585 Firewall. The architect enabled the following features on the NetScaler devices. Content Switching, SSL Offloading, Load Balancing, NetScaler Gateway, Application Firewall in hybrid security and Appflow. All are enabled to send monitoring information to NMAS 12.0.53.13 nc build.
The architect is preparing to configure load balancing for Microsoft Exchange 2016 server.
The following requirements were discussed during the implementation:
* All traffic needs to be segregated based on applications, and the fewest number of IP addresses should be utilized during the configuration
* All traffic should be secured and any traffic coming into HTTP should be redirected to HTTPS.
* Single Sign-on should be created for Microsoft Outlook web access (OWA).
* NetScaler should recognize Uniform Resource Identifier (URl) and close the session to NetScaler when users hit the Logoff button in Microsoft Outlook web access.
* Users should be able to authenticate using either user principal name (UPN) or sAMAccountName.
* The Layer 7 monitor should be configured to monitor the Microsoft Outlook web access servers and the monitor probes must be sent on SSL Which monitor will meet these requirements?

  • A. add lb monitor mon_rpc HTTP-ECV -send "GET /rpc/healthcheck.htm" recv 200 -LRTM DISABLED
  • B. add lb monitor mon_rpc HTTP -send "GET /rpc/healthcheck.htm" recv 200 -LRTM DISABLED
    -secure YES
  • C. add lb monitor mon_rpc HTTP-ECV -send "GET/rpc/healthcheck.htm" recv 200 -LRTM DISABLED
    -secure YES
  • D. add lb monitor mon_rpc HTTP-ECV -send "GET /rpc/healthcheck.htm" recv 200 -LRTM ENABLED

Answer: A

 

NEW QUESTION 38
Which parameter must a Citrix Architect configure to ensure that HDX Proxy Connection terminates upon AAA Session TimeOut?

  • A. Session timeout(mins) in VPN Parameters
  • B. ICA session timeout in netScaler Gateway Session Profile.
  • C. ICA session timeout in VPN parameters
  • D. Session timeout(mins) in NetScaler gateway Session Profile.

Answer: B

Explanation:
Explanation/Reference: https://www.citrix.com/content/dam/citrix/en_us/citrix-developer/documents/Netscaler/how-do-i-ica- session-timeout-with-aaa.pdf

 

NEW QUESTION 39
Scenario: A Citrix Architect needs to assess an existing NetScaler configuration. The customer recently found that certain user groups were receiving access to an internal web server with an authorization configuration that does NOT align with the designed security requirements.
Click the Exhibit button view the configured authorization settings for the web server.

Which item should the architect change or remove to align the authorization configuration with the security requirements of the organization?

  • A. Item 5
  • B. Item 3
  • C. Item 4
  • D. Item 2
  • E. Item 1

Answer: D

 

NEW QUESTION 40
A Citrix Architect needs to make sure that maximum concurrent AAA user sessions are limited to 4000 as a security restriction.
Which authentication setting can the architect utilize to view the current configuration?

  • A. AAA Parameters
  • B. AAA Virtual Server
  • C. Global Session Settings
  • D. Active User Session

Answer: C

 

NEW QUESTION 41
Scenario: A Citrix Architect has configured NetScaler Gateway integration with a XenApp environment to provide access to users from two domains: vendorlab.com and workslab.com. The Authentication method used is LDAP.
Which two steps are required to achieve Single Sign-on StoreFront using a single store? (Choose two.)

  • A. Configure Single sign-on domain in Session profile 'userPrincipalName'.
  • B. Configure SSO Name attribute to 'userPrincipalName' in LDAP Profile.
  • C. Do NOT configure SSO Name attribute in LDAP Profile.
  • D. Do NOT configure sign-on domain in Session Profile.

Answer: B,C

Explanation:
Explanation/Reference:
Reference: https://docs.citrix.com/en-us/storefront/3-12/plan/user-authentication.html

 

NEW QUESTION 42
......

Ultimate Guide to Prepare 1Y0-440 Certification Exam for CCE-N: https://www.actual4exams.com/1Y0-440-valid-dump.html