Which Citrix Application Delivery Management (ADtv1) Analytics page allows a Citrix Engineer to monitor Citrix Virtual Apps and Desktop traffic?

  • A. Web Insight
  • B. WAN Insight
  • C. HDX Insight
  • D. Gateway Insight

Answer: C

Which font end Optimization technique overcomes the parallel download limitation of web browsers?

  • A. Domain Sharing
  • B. Minify
  • C. Extend Page Cache
  • D. Lazy Load

Answer: A

Which feature of Learning should a Citrix Engineer configure to direct Citrix Web App Firewall to learn from specific sessions?

  • A. Advanced policy expression filter
  • B. Default policy expression filter
  • C. Trusted Learning Clients list
  • D. Manage Content Types for Safe Commerce

Answer: C

A Citrix Engineer wants the Citrix Web App Firewall to respond with a page stored on the Citrix ADC when a violation is detected.
Which profile setting accomplishes this?

  • A. Redirect URL
  • B. RFC Profile
  • C. Default Request
  • D. HTML Error Object

Answer: D

Scenario: A Citrix Engineer reviewed the log files of a web application and found the error message below: "Unable to complete request Unrecognized field cext2_price>" Which protection can the engineer implement to prevent this error from happening?

  • A. Form Field Consistency
  • B. Cross-Site Request Forgeries (CSRF)
  • C. HTML SQL Injection
  • D. HTML Cross-Site Scripting (XSS)

Answer: A

Scenario: A Citrix Engineer is implementing Citrix Web App Firewall to protect a new web application. The engineer has created a profile, configured the relaxation rules, and applied signature protections. Additionally, the engineer has assigned the profile to a policy and bound the policy to the application.
What is the next step for the engineer in protecting the web application?

  • A. Update the global default Citrix Wed App Firewall profile with the new signature file.
  • B. Enable the Signature Auto-Update feature.
  • C. Enable logging on key protections.
  • D. Test the web application protections with a group of trusted users.

Answer: B

Which Front End Optimization technique can a Citrix Engineer enable on the Citrix ADC to remove all excess whitespace from a file?

  • A. Shrink to Attributes
  • B. Minify
  • C. Lazy Load
  • D. Inlining

Answer: B

Scenario: A Citrix Engineer wants to protect a web application using Citrix Web App Firewall. After the Web App Firewall policy afweb_protect is bound to the virtual server, the engineer notices that Citrix Web App Firewall is NOT properly displaying the page.
A positive number for the Policy Hits counter for afweb_protect, tells the engineer the number of times Citrix Web App Firewall . (Choose the correct option to complete the sentence.)

  • A. received a request that matched the policy expression for afweb_protect
  • B. blocked traffic for web applications assigned the afweb_protect policy
  • C. logged a request matching the expression defined in the afweb_protect policy
  • D. forwarded users to the Redirect URL specified in the profile assigned to afweb_protect

Answer: A

A Citrix Engineer observes that the servers hosting a critical application are crashing on a regular basis. Which protection could the engineer implement on a Citrix Web App Firewall in front of the application?

  • A. Buffer Overflow Check
  • B. HTML Cross-Site Scripting (XSS)
  • C. Start URL
  • D. HTML SQL Injection

Answer: A

Scenario: A Citrix Engineer is notified that improper requests are reacting the web application. While investigating, the engineer notices that the Citrix Web App Firewall policy has zero hits.
What are two possible causes for this within the Citrix Web App Firewall policy? (Choose two.)

  • A. The expression is incorrect.
  • B. It has been assigned an Advanced HTML profile.
  • C. It is NOT bound to the virtual server.
  • D. It has been assigned the built-in APPFW_RESET profile.

Answer: AC

Which report can a Citrix Engineer review to ensure that the Citrix ADC meets all PCI-DSS requirements.

  • A. Generate Application Firewall Configuration
  • B. PCI-DSS Standards
  • C. Application Firewall Violations Summary
  • D. Generate PCI-DSS

Answer: D

Scenario: A Citrix Engineer wants to use Citrix Application Delivery Management (ADM) to monitor a single Citrix ADC VPX with eight web applications and one Citrix Gateway. It is important that the collected data be protected.
Which deployment will satisfy the requirements?

  • A. A single Citrix ADM with database replication to a secondary storage repository.
  • B. A pair of Citrix ADM virtual appliances configured for High Availability.
  • C. A single Citrix ADM imported onto the same hypervisor as the Citrix ADC VPX.
  • D. A pair of Citrix ADM virtual appliances, each working independently.

Answer: B

Scenario: A Citrix Engineer is asked to help improve the performance of a web application. After capturing and analyzing a typical session, the engineer notices a large number of user requests for the stock price of the company.
Which action can the engineer take to improve web application performance for the stock quote?

  • A. Enable the Combine CSS optimization.
  • B. Create a static content group.
  • C. Create a dynamic content group.
  • D. Enable the Minify JavaScript optimization.

Answer: C

Scenario: A Citrix Engineer wants to configure the Citrix ADC for OAuth authentication. The engineer uploads the required certificates, configure the actions, and creates all the necessary policies. After binding the authentication policy to the application, the engineer is unable to authenticate.
What is the most likely cause of this failure?

  • A. The log files are full.
  • B. The Redirect URL is incorrect.
  • C. The certificates have expired.
  • D. The policy bindings were assigned incorrect priorities.

Answer: D

Scenario: A Citrix Engineer wants to protect a web application using Citrix Web App Firewall. After the Web App Firewall policy is bound to the virtual server, the engineer notices that Citrix Web App Firewall is NOT blocking bad requests from clients. Which tool can help the engineer view the traffic that is passing to and from the client?

  • A. nstrace
  • B. nsconmsg
  • C. syslog
  • D. aaad.debug

Answer: A

Which Application-level Quality of Experience (AppQoE) Action setting modifies the communication characteristics of the connections established with the associated web application?

  • A. Priority
  • B. TCP Profile
  • C. Action Type
  • D. DOS Action

Answer: C

Scenario: A Citrix Engineer implements Application-level Quality of Experience (AppQoE) to protect a web application. The engineer configures the AppQoE action to deliver a custom response from a backup server once the maximum number of concurrent connection is reached.
To achieve this, the engineer should set the Acton Type to and specify the . (Choose the correct option to complete the sentence.)

  • A. NS; Alternate Content Server Name
  • B. ACS; Custom File
  • C. ACS; Alternate Content Server Name
  • D. NS; Custom File

Answer: C

A Citrix Engineer wants to create a configuration job template to add a DNS nameserver to each Citrix ADC instance. What is a valid variable name for the DNS nameserver?

  • A. %dns_nameserver%
  • B. %dns_nameserver
  • C. $dns_nameserver$
  • D. $dns nameserver

Answer: C

Scenario: A Citrix Engineer reviews the log files for a business-critical web application. The engineer notices a series of attempts to directly access a file, /etc/passwd.
Which feature can the engineer implement to protect the application against this attack?

  • A. Buffer Overflow
  • B. Start URL
  • C. Content Type
  • D. Form Field Consistency

Answer: B

Which security model should a Citrix Engineer implement to make sure that no known attack patterns pass through Citrix Web App Firewall?

  • A. Hybrid
  • B. Static
  • C. Positive
  • D. Negative

Answer: D


