Vendor: Citrix. Exam Code: 1Y Exam Name: Citrix NetScaler 10.5 Essentials and Networking. Question Question 160

Similar documents
Vendor: Citrix. Exam Code: 1Y Exam Name: Citrix NetScaler 10.5 Essentials for Networking. Q&As: Demo

KillTest ᦝ䬺 䬽䭶䭱䮱䮍䭪䎃䎃䎃ᦝ䬺 䬽䭼䯃䮚䮀 㗴 㓸 NZZV ]]] QORRZKYZ PV ٶ瀂䐘މ悹伥濴瀦濮瀃瀆ݕ 濴瀦

PASS4TEST. IT Certification Guaranteed, The Easy Way! We offer free update service for one year

Citrix Exam 1Y0-253 Implementing Citrix NetScaler 10.5 for App and Desktop Solutions Version: 6.0 [ Total Questions: 186 ]

Vendor: Citrix. Exam Code: 1Y Exam Name: Implementing Citrix NetScaler 10.5 for App and Desktop Solutions. Version: Demo

Certkiller.1Y Q.A

Citrix 1Y0-240 Exam. Volume: 69 Questions

PASS4TEST. IT Certification Guaranteed, The Easy Way! We offer free update service for one year

1Y Citrix NetScaler 12 Essentials and Traffic Management. vmexam.com Exam Summary Syllabus Questions

Citrix.Actualtests.1Y0-250.v by.PKASH.65q. Exam Code: 1Y Exam Name: Implementing Citrix NetScaler 10 for App and Desktop Solutions

Citrix 1Y Citrix NetScaler 10 Essentials and Networking. Download Full Version :

Vendor: Citrix. Exam Code: 1Y Exam Name: Implementing Citrix NetScaler 10 for App and Desktop Solutions. Version: Demo

Citrix Exam 1Y0-351 Citrix NetScaler 10.5 Essentials and Networking Version: 7.0 [ Total Questions: 178 ]

1Y Citrix NetScaler 12 Essentials and Unified Gateway. vmexam.com Exam Summary Syllabus Questions

Citrix NetScaler Traffic Management

Exam4Tests. Latest exam questions & answers help you to pass IT exam test easily

PASS4TEST. IT Certification Guaranteed, The Easy Way! We offer free update service for one year

1Y0-230.citrix. Number: 1Y0-230 Passing Score: 800 Time Limit: 120 min.

CNS-207-2I Implementing Citrix NetScaler 10.5 for App and Desktop Solutions

Citrix NetScaler 1000V Administration Guide

CNS 207 3i - Implementing Citrix NetScaler 11.0 for Application and Desktop Solutions

CNS-205 Citrix NetScaler 11 Essentials and Networking

Identity Firewall. About the Identity Firewall

Citrix NetScaler 10 Essentials and Networking Course CNS205; 5 Days, Instructor-led

Vendor: Citrix. Exam Code: 1Y Exam Name: Designing, Deploying and Managing Citrix XenMobile Solutions. Version: Demo

CNS-205 Citrix NetScaler 10.5 Essentials and Networking

Configuring Virtual Servers

NetScaler for Apps and Desktops CNS-222; 5 Days; Instructor-led

Citrix NetScaler Basic and Advanced Administration Bootcamp

PASS4TEST. IT Certification Guaranteed, The Easy Way! We offer free update service for one year

What is New in Cisco ACE 4710 Application Control Engine Software Release 3.1

1Y Citrix. Implementing Citrix NetScaler 10 for App and Desktop Solutions

Prerequisites CNS-220 Citrix NetScaler Essentials and Traffic Management

Barracuda Link Balancer

Citrix CNS-220 1Y0-240 Exam Hints

PrepAwayExam. High-efficient Exam Materials are the best high pass-rate Exam Dumps

Using ANM With Virtual Data Centers

Understanding of basic networking concepts (routing, switching, VLAN, firewall functionality)

CNS-220-1I: CITRIX NETSCALER TRAFFIC MANAGEMENT

CNS-220-1I: Citrix NetScaler Traffic Management Essentials

Integrating NetScaler ADCs with Cisco ACI

Citrix NetScaler 10.5 Essentials and Networking (CNS-205)

ITdumpsFree. Get free valid exam dumps and pass your exam test with confidence

Citrix 1Y Deploying Citrix XenDesktop 7.6 Solutions. Download Full Version :

Getting Started with Citrix NetScaler

Course Objectives In this course, students can expect to learn how to:

Citrix NetScaler Essentials and Unified Gateway

FAQs :46:59 UTC Citrix Systems, Inc. All rights reserved. Terms of Use Trademarks Privacy Statement

Optimization :55:22 UTC Citrix Systems, Inc. All rights reserved. Terms of Use Trademarks Privacy Statement

Viewing System Status, page 404. Backing Up and Restoring a Configuration, page 416. Managing Certificates for Authentication, page 418

Citrix NetScaler LLB Deployment Guide

Identity Firewall. About the Identity Firewall. This chapter describes how to configure the ASA for the Identity Firewall.

CISCO EXAM QUESTIONS & ANSWERS

Exam Questions 1Y0-253

Citrix NetScaler 10.5 Essentials for ACE Migration (CNS-208)

White Paper. Citrix NetScaler Deployment Guide

Citrix 1Y Citrix NetScaler 12 Essentials and Unified Gateway.

Citrix 1Y0-230 Exam. Volume: 64 Questions

DrayTek Vigor Technical Specifications. PPPoE, PPTP, DHCP client, static IP, L2TP*, Ipv6. Redundancy. By WAN interfaces traffic volume

JN0-355 Q&As. Junos Pulse Secure Access, Specialist (JNCIS-SA) Pass Juniper JN0-355 Exam with 100% Guarantee

Zone-Based Policy Firewall High Availability

CISCO EXAM QUESTIONS & ANSWERS

TriScale Clustering Tech Note

Hands-on Lab Exercise Guide

Command Center :20:00 UTC Citrix Systems, Inc. All rights reserved. Terms of Use Trademarks Privacy Statement

BIG-IP Acceleration: Network Configuration. Version

1Y0-240.exam.67q. Number: 1Y0-240 Passing Score: 800 Time Limit: 120 min File Version: 1. Citrix 1Y

Vendor: Citrix. Exam Code: 1Y Exam Name: Managing Citrix XenDesktop 7 Solutions Exam. Version: Demo

BIG-IP Access Policy Manager : Portal Access. Version 12.1

NetScaler Analysis and Reporting. Goliath for NetScaler Installation Guide v4.0 For Deployment on VMware ESX/ESXi

Loadbalancer.org Virtual Appliance quick start guide v6.3

BCCPP Q&As. Blue Coat Certified Proxy Professional. Pass Blue Coat BCCPP Exam with 100% Guarantee

Citrix Exam 1Y0-371 Designing, Deploying and Managing Citrix XenMobile 10 Enterprise Solutions Version: 6.0 [ Total Questions: 143 ]

VMWARE VREALIZE OPERATIONS MANAGEMENT PACK FOR. Citrix NetScaler. User Guide

ExamTorrent. Best exam torrent, excellent test torrent, valid exam dumps are here waiting for you

Configuring Traffic Policies

Content Switching Module with SSL Commands

Introduction to Change and Configuration Management

Infoblox Authenticated DHCP

BIG-IP Access Policy Manager : Portal Access. Version 13.0

Deployment Guide. Blackboard Learn +

CNS-222EA - EARLY ACCESS: NETSCALER FOR APPS AND DESKTOPS

Access Gateway 9.3, Enterprise Edition

Brocade Certified Layer 4-7 Professional Practice Questions w/answers For Exam

Students interested in learning how to implement and manage the advanced NetScaler features using leading practices. Specifically:

Configuring Web Cache Services By Using WCCP

BIG-IP Access Policy Manager : Secure Web Gateway. Version 13.0

High Availability Synchronization PAN-OS 5.0.3

User Guide TL-R470T+/TL-R480T REV9.0.2

Monitoring WAAS Using WAAS Central Manager. Monitoring WAAS Network Health. Using the WAAS Dashboard CHAPTER

vserver vserver virtserver-name no vserver virtserver-name Syntax Description

1Y0-371 Q&As. Designing, Deploying and Managing Citrix XenMobile 10 Enterprise Solutions. Pass home 1Y0-371 Exam with 100% Guarantee

Licensing, Upgrading, and Downgrading

Citrix 1Y Deploying Citrix XenDesktop 7 Solution. Download Full Version :

This article explains how to configure NSRP-Lite for a NS50 firewall to a single WAN.

CITRIX 1Y0-200 EXAM QUESTIONS & ANSWERS

Cisco Exam Troubleshooting and Maintaining Cisco IP Networks (TSHOOT) Version: 6.0 [ Total Questions: 79 ]

Platform Compatibility... 1 Enhancements... 2 Known Issues... 3 Upgrading SonicOS Enhanced Image Procedures... 3 Related Technical Documentation...

EQ/OS Release Notes

Configuration Guide TL-ER5120/TL-ER6020/TL-ER REV3.0.0

Transcription:

Vendor: Citrix Exam Code: 1Y0-351 Exam Name: Citrix NetScaler 10.5 Essentials and Networking Question 121 -- Question 160 Visit PassLeader and Download Full Version 1Y0-351 Exam Dumps QUESTION 121 Scenario: A network engineer deployed a new NetScaler MPX appliance on the network and all interfaces are connected to the core switch. The network engineer notices the CPU utilization has become very high on the switch since the NetScaler deployment. Which two actions could the engineer perform on the NetScaler to resolve this issue? (Choose two.) A. Configure VMAC B. Utilize static routing C. Configure a channel D. Connect a single interface only D QUESTION 122 Scenario: A network engineer has created an SSL offload virtual server. The virtual server shows as a DOWN state. Which two scenarios could cause the virtual server showing as DOWN? (Choose two.) A. Persistence is set to NONE. B. The protocol should be SSL_TCP. C. A responder policy has been bound. D. The service is not bound to the virtual server. E. No SSL certificate is bound to the virtual server. Answer: DE QUESTION 123 Scenario: Company Inc. wants to modify the HTTP Server header so that unauthorized users and malicious code CANNOT use the header to identify the software that the HTTP server uses. Which two actions can the engineer take to meet the needs of the scenario? (Choose two.) A. Add an HTTP Server Type on the Client Request. B. Mask the HTTP Server Type on the Server Response. C. Replace the HTTP Server Type on the Client Request. D. Delete the HTTP Server Type on the Server Response.

D QUESTION 124 Scenario: A network engineer adds a secondary node for high availability (HA) purposes. To confirm the implementation is working, the engineer initiates a fail over; however when this is complete, some virtual servers are un-reachable. What is a possible cause of this issue? A. SSL has not been enabled as a feature. B. The network configuration is mismatched on the nodes. C. HA sync does not propagate network settings by default. D. The nsroot password has been changed on the new node. QUESTION 125 What are two valid ways of checking that a back-end web server is reachable from the NetScaler SNIP address using port 80? (Choose two.) A. Run traceroute. B. Run telnet using the -srcip option. C. Bind a DNS monitor to a service group containing the web server. D. Bind a HTTP monitor to a service group containing the web server. E. Run the ping command between the NetScaler and the web server. D QUESTION 126 A network engineer wants to hide the IP address of the outgoing packets by changing it to the IP of the VIP. Which feature should the administrator use? A. ACL B. PBR C. RNAT D. Rewrite QUESTION 127 During a recent security penetration test, several ports on the management address were identified as providing unsecured services. Which two methods could the network engineer use to restrict these services? (Choose two.) A. Configure Auditing policies. B. Create Content Filtering policies. C. Create Access Control Lists (ACLs). D. Configure options on the Management IP addresses. D QUESTION 128 An engineer should use the filter (content filtering) feature to prevent and. (Choose the

two correct options to complete the sentence.) A. the use of unauthorized HTTP methods B. a client from accessing a specific IP on the back-end C. inappropriate HTTP headers from being sent to your Web server D. inappropriate MSSQL commands from being sent to your SQL server E. a client from a specific VLAN ID to access resources on the NetScaler Answer: AC QUESTION 129 Scenario: A network engineer needs to implement high availability (HA) for a pair of NetScaler appliances. The existing appliance was recently restarted and the new appliance has been rack mounted and turned on for several weeks waiting to be configured. The engineer needs to create an HA pair, but is concerned that his original appliance will get erased when the HA pair is created. Which two tasks could the engineer do before the creation of the HA pair to ensure that the exiting unit stays the main appliance? (Choose two.) A. Set StayPrimary on the existing node. B. Configure StaySecondary on the new node. C. Enable HA Sync before adding the second node. D. Create a Route Monitor to ensure proper synchronization. E. Ensure that INC mode is enabled during creation of HA Pair. Answer: AB QUESTION 130 Scenario: A network engineer plans to configure an Active Directory Server as the default authentication for a NetScaler deployment and provide users with the option to change their password if it is expired. Which two actions should the engineer take to configure this authentication requirement on the NetScaler system? (Choose two.) A. Configure a pre-authentication policy. B. Select security type as SSL on Authentication policy. C. Configure Authentication server with SSO name attribute. D. Configure Authentication server with allow password change option. D QUESTION 131 Which two parameters in the TCP buffering settings can be controlled by a network engineer? (Choose two.) A. buffering size B. source IP range C. destination IP range D. memory size for buffering Answer: AD QUESTION 132 Users have reported that they are receiving a confusing error message related to SSL sessions

when connecting from older browsers. How could the network engineer present this error to users in a customized format? A. Enable the SSL v2 protocol. B. Set a URL on the backup virtual server. C. Add a redirect URL to the virtual server. D. Configure SSL v2 Redirection for the virtual server. Answer: D QUESTION 133 A network engineer must determine which SSL protocols are enabled on a virtual server named SSL01. Which command could the engineer run to see this information? A. Show ssl stats B. Show server SSL01 C. Show vserver SSL01 D. Show ssl vserver SSL01 Answer: D QUESTION 134 The security department just conducted a penetration test on the published virtual servers and all of the SSL virtual servers returned the result "Allowed changing to weak certificate standard" in the report. The reason for this result could be that the network engineer who configured the virtual servers forgot to. (Choose the correct option to complete the sentence.) A. block TLSv1 B. apply the SSL policy C. configure the HIGH Cipher group only D. configure the DEFAULT Cipher group only QUESTION 135 Which policy expression must an engineer use to enable compression for javascript files? A. HTTP.RES.BODY(0).CONTAINS("javascript") B. HTTP.REQ.BODY(0).CONTAINS("javascript") C. HTTP.RES.HEADER("Content-Type").CONTAINS("javascript") D. HTTP.REQ.HEADER("Content-Type").CONTAINS("javascript") QUESTION 136 Which expression must an engineer use to prevent compression of Cascading Style Sheets? A. HTTP.RES.BODY(0).CONTAINS("text/css") B. HTTP.REQ.BODY(0).CONTAINS("text/css") C. HTTP.RES.HEADER("Content-Type").CONTAINS("text/css") D. HTTP.REQ.HEADER("Content-Type").CONTAINS("text/css")

Free VCE and PDF Exam Dumps from PassLeader QUESTION 137 The purpose of pre-fetch in integrated caching is to automatically. (Choose the correct option to complete the sentence.) A. refresh a cached object before expiring B. fetch objects from the forwarding cache before expiring C. retrieve all objects on a published website after a policy is applied D. retrieve an object in the expression from a website after a policy is applied Answer: A QUESTION 138 What is the purpose of the flash cache option in integrated caching? A. To completely wipe a cache group when the targeted selector is hit in the cache B. To use the flash memory for storage for a specific cache group to improve performance C. To queue simultaneous requests of an object and answer all with the same response from the server D. To answer the client request without checking if the object has expired, objects are checked periodically instead QUESTION 139 Scenario: A network engineer has created two selectors to use to populate a cache group in integrated caching. One selector, "Hit," will determine what to add to the group. The other, "Inval", will select what should be invalidated. Which command should the engineer run to create the cache group? A. add cache contentgroup CacheGroup1 -hitparams Hit -invalparam Inval B. add cache contentgroup CacheGroup1 -hitselector Hit -invalselector Inval C. set cache contentgroup CacheGroup1 - hitparams Hit -invalparam Inval -type HTTP D. set cache contentgroup CacheGroup1 -hitselector Hit - invalselector Inval -type HTTP QUESTION 140 A network engineer is investigating a recent failure of NetScaler high availability and confirms that some recent changes were made to the configuration. What is a likely cause of the failure? A. Load balancing virtual server marked DOWN. B. SNIP has had management access removed. C. RPC node password changed on an appliance. D. The network command policy has been modified. QUESTION 141 A network engineer has started at a new company and has been instructed to restrict access to an external facing VIP to selected third party clients, based on their source IP address range. What could the engineer do to accomplish this task?

A. Enable USNIP mode on the Netscaler. B. Enable the host route option on the external VIP. C. Create an Extended ACL based on the source IP address. D. Create a SNIP address in the external VLAN limited to the source IP addresses. QUESTION 142 Scenario: An engineer has been asked to implement load balancing of an existing unsecured web application. The engineer needs to ensure that users will access the web application using HTTPS, but no changes can be made to the web servers hosting the web application. In order to fulfill the requirements, the engineer must create an service group and add members with port ; and bind the service group to an virtual server. (Choose the correct set of options to complete the sentence.) A. SSL; 443; SSL B. HTTP; 80; SSL C. SSL; 80; HTTP D. HTTPS; 443; HTTP QUESTION 143 A network engineer notes that a high availability pair (HA) is NOT synchronizing correctly and decides to open a ticket with Citrix Support. When opening the new ticket with Citrix Support, the engineer should run show and. (Choose the correct set of options to complete the sentence.) A. ha node; provide any public IP addresses listed B. ha node; provide the hello and dead interval data C. techsupport on the primary device; send the output to Citrix Support D. techsupport on both the primary and secondary devices; send the output to Citrix support Answer: D QUESTION 144 A network engineer needs to upgrade both appliances of a High Availability (HA) pair. In which order should the network engineer upgrade the appliances? A. Disable high availability and upgrade one node at a time. B. Upgrade the primary node first without disabling high availability. C. Upgrade the secondary node first without disabling high availability. D. Perform the upgrade simultaneously without disabling high availability. QUESTION 145 Scenario: A network engineer is managing a NetScaler environment that has two NetScaler devices running as a high availability pair. The engineer must upgrade the current version from NetScaler 9 to NetScaler 10.5. Which action must the engineer take? A. Upgrade the primary node and perform HA sync.

B. Upgrade the secondary node and then upgrade the primary node. C. Upgrade the primary node and then upgrade the secondary node. D. Break the high availability pair, upgrade each NetScaler device, and then reconfigure high availability. QUESTION 146 An engineer has two NetScaler devices in two different datacenters and wants to create a high availability (HA) pair with the two devices, even though they are on two different subnets. How can the engineer configure the HA Pair between the two NetScaler devices? A. Configure StaySecondary on the second datacenter appliance. B. Ensure that INC mode is enabled during the creation of the HA Pair. C. Enable the HAMonitors on all interfaces after the HA Pair has been created. D. Change the NSIP of the second appliance to be on the same subnet as the first appliance. QUESTION 147 When a network engineer logs onto a new NetScaler device in the London datacenter, data output indicates that the device is NOT configured for the local time. How can the network engineer synchronize the correct time with an NTP server in the local data center? A. Configure the correct time from the GUI and restart. B. Modify the ntp.conf and rc.netscaler files and restart. C. Logon using the nsrecover/nsroot credentials and restart. D. Configure the NetScaler as a secondary NTP server and restart. QUESTION 148 Scenario: The NetScaler has connections to a large number of VPNs. The network engineer wants to minimize the number of ARP requests. Which feature should the network engineer enable to minimize ARP requests? A. TCP Buffering B. Use Source IP C. Edge Configuration D. MAC based forwarding Answer: D QUESTION 149 A network engineer has configured two NetScaler MPX appliances as a high availability (HA) pair. What can the engineer configure to prevent failover if only a single interface fails? A. FIS B. PBR C. SNMP D. VMAC Answer: A

QUESTION 150 Scenario: A NetScaler appliance currently has a manually configured channel containing four interfaces; however, the engineer has been told that the NetScaler must now only use a single interface for this network. The engineer removes the channel and immediately notices a decrease in network performance. How could the engineer resolve this issue? A. Reset the unused interfaces B. Disable the unused interfaces C. Enable flow control on all interfaces D. Disable HA monitoring on the three interfaces that are no longer required QUESTION 151 Scenario: A NetScaler engineer needs to enable access to some web servers running on an IPv6- only network. The clients connecting the services are on an IPv4 network. The engineer has already enabled IPv6 on the NetScaler. What does the engineer need to do in order to provide access to the services on the IPv6 network? A. Create an IPv6 tunnel and a IPv4 virtual server. B. Configure an IPv6 VLAN and bind the required interface. C. Create a IPv4 virtual server and bind the service group to it. D. Create an IPv6 ACL and a IPv4 virtual server and bind the ACL to the virtual server. QUESTION 152 Scenario: For security reasons, the NSIP needs to be configured to only be accessible on interface 0/1, which is VLAN 300. The NSIP address is 10.110.4.254 and the subnet mask is 255.255.255.0. How would the network engineer achieve this configuration? A. set ns config -nsvlan 300 -ifnum 0/1 B. set ns ip 10.110.4.254 -gui ENABLED -vrid 300 C. add vlan 300 set ns ip 10.110.4.254 -mgmtaccess ENABLED D. set ns config -IPAddress 10.110.4.254 -netmask 255.255.255.0 Answer: A QUESTION 153 Why would an engineer want to specify a TCP Profile for a specific service group? A. To enable use of features like SSL over TCP for that specific service group. B. To adjust the TCP settings for traffic to and from that specific service group. C. To use a specific SNIP for traffic to the back-end servers in that service group. D. To enable features like use source IP, TCP keep alive and TCP buffering for a specific service group. QUESTION 154 A network engineer wants to optimize a published load balanced SSL virtual server for WAN

connection with long delay, high bandwidth with minimal packet drops. What would the network engineer use to do this type of optimization for the SSL virtual server? A. SSL policy B. TCP profile C. Compression policy D. Priority queuing policy QUESTION 155 Scenario: The NetScaler is connected to two subnets. The NSIP is 10.2.9.12. The external SNIP is 10.2.7.3. The MIP for internal access is 10.2.9.3. Web servers, authentication servers and time servers are on the 10.2.10.0/24 network which is available through the 10.2.9.1 router. The external firewall has the 10.2.7.1 address. Traffic bound for Internet clients should flow through the external firewall. Which command should be used to set the default route? A. add route 0.0.0.0 0.0.0.0 10.2.7.1 B. add route 0.0.0.0 0.0.0.0 10.2.9.1 C. add route 10.0.0.0 255.0.0.0 10.2.9.1 D. add route 10.0.0.0 255.0.0.0 10.2.7.1 Answer: A QUESTION 156 Some SSL certificate files may be missing from a NetScaler appliance. Which directory should an engineer check to determine which files are missing? A. /nsconfig/ssl B. /nsconfig/ssh C. flash/nsconfig/ D. /var/netscaler/ssl/ Answer: A QUESTION 157 Scenario: An engineer has been hired to manage the content-switching configurations on the NetScaler. The user account for this engineer must have the standard rules that apply to the other administrators. What should the engineer do to allow for the extra privileges? A. Modify the current Command Policy and then save the changes. B. Unbind the current Command Policy of the user account and then save the changes. C. Remove the custom Command Policy and then create one with the new requirements. D. Create a custom Command Policy and bind it to the user account with the highest priority. Answer: D QUESTION 158 An engineer has bound three monitors to a service group and configured each of the monitors with a weight of 10. How should the engineer ensure that the members of the service group are marked as DOWN when at least two monitors fail?

A. Re-configure the weight of each monitor to 0. B. Configure the service group with a threshold of 21. C. Configure the service group with a threshold of 20. D. Re-configure the weight of each monitor to 5, and configure the service group threshold to 15. QUESTION 159 An engineer has configured a DNS virtual server on a NetScaler appliance but the monitors are showing DOWN and DNS resolution is failing. Which of the following should the engineer check? A. Port 53 between the VIP address and the DNS servers is allowed B. That a ADNS_TCP service has been configured on the NetScaler C. That the load balancing feature has been enabled on the NetScaler D. Port 53 between the NSIP address and the DNS servers is allowed E. Port 53 between the SNIP address and the DNS servers is allowed Answer: E QUESTION 160 What type of protocol does AppFlow use for reporting? A. TCP B. UDP C. HTTP D. SSL_TCP Visit PassLeader and Download Full Version 1Y0-351 Exam Dumps