Citrix 1Y0-341 Citrix ADC Advanced Topics – Security, Management and Optimization Online Training
Citrix 1Y0-341 Online Training
The questions for 1Y0-341 were last updated at Dec 24,2024.
- Exam Code: 1Y0-341
- Exam Name: Citrix ADC Advanced Topics - Security, Management and Optimization
- Certification Provider: Citrix
- Latest update: Dec 24,2024
A Citrix Engineer needs to set up access to an internal application for external partners.
Which two entities must the engineer configure on the Citrix ADC to support this? (Choose two.)
- A . SAML Policy
- B . SAMLldP Profile
- C . SAMLldP Policy
- D . SAML Action
Which action ensures that content is retrieved from the server of origin?
- A . CACHE
- B . MAY_CACHE
- C . NOCACHE
- D . MAY_NOCACHE
Scenario: During application troubleshooting, a Citrix Engineer notices that response traffic received from a protected web application is NOT matching what the web server is sending out. The auditor is concerned that Man-In-The-Middle attack is in progress.
Which action is the Citrix Web App Firewall performing that would trigger this false positive?
- A . Removing the Last-Modified header
- B . Inserting a hidden form field
- C . Removing the Accept-Encoding header
- D . Modifying and adding cookies in the response
Which license must be present on the Citrix ADC for the Citrix Application Delivery Management (ADM) Service to generate HDX Insight reports that present one year’s worth of data?
- A . Advanced
- B . Premium Plus
- C . Premium
- D . Standard
Which Citrix Application Delivery Management (ADM) feature can a Citrix Engineer use to narrow a list of Citrix ADC devices based on pre-defined criteria?
- A . AutoScale Groups
- B . Instance Groups
- C . Configuration Template
- D . Tags
- E . Agent
Which protection can a Citrix Engineer implement to prevent a hacker from extracting a customer list from the company website?
- A . Cross-Site Request Forgeries (CSRF)
- B . Form Field Consistency
- C . HTML Cross-Site Scripting (XSS)
- D . HTML SQL Injection
A Citrix Engineer is notified that no traffic is reaching the protected web application. While investigating, the engineer notices that the Citrix Web App Firewall policy has 516,72 hits.
What should the engineer check next?
- A . The security checks in the assigned profile
- B . The HTML Error Object
- C . The policy expression
- D . The security checks in the global default profile
Scenario: A Citrix Engineer configures Citrix Web App Firewall to protect an application. Users report that they are NOT able to log on. The engineer enables a Start URL relaxation for the path //login.aspx.
What is the effect of the Start URL relaxation on the application?
- A . Access to the path /login.aspx is unblocked.
- B . Access to the path /login.aspx is blocked.
- C . External users are blocked from the path /login.aspx.
Internal users are permitted to the path /login.aspx. - D . Non-administrative users are blocked from the path /login.aspx Administrative users are permitted to the path /login.aspx.
Scenario: A Citrix Engineer wants to protect a web application using Citrix Web App Firewall. The engineer enables the Learn action for the Start URL, HTML, Cross-Site Scripting, and HTML SQL Injection protections. The engineer assigns this profile to a policy, which is then bound to the virtual server.
Which two items can the engineer check to determine that the Learn action is NOT capturing any rules? (Choose two.)
- A . The HTML Error Object is configured for the profile.
- B . Enough space is left on the /flash file system.
- C . The aslearn process is running on the Citrix ADC appliance.
- D . The Learn database is less than 20 MB.
A Citrix Engineer wants to delegate management of Citrix Application Delivery Management (ADM) to a junior team member.
Which assigned role will limit the team member to view all application-related data?
- A . readonly
- B . appReadonly
- C . admin
- D . appAdmin