Question 1:

A review of purchases made at an online retailer shows that several orders were processed for items at an unpublished price.

Which protection can a Citrix Engineer implement to prevent a site visitor from modifying the unit price of a product on the shopping cart page?

A. Cross-Site Request Forgeries (CSRF)

B. Form Field Consistency

C. HTML Cross-Site Scripting (XSS)

D. HTML SQL Injection

Correct Answer: B

Question 2:

Which Citrix Application Delivery Management (ADM) Analytics page allows a Citrix Engineer to monitor the metrics of the optimization techniques and congestion control strategies used in Citrix ADC appliances?

A. Gateway Insight

B. TCP Insight

C. HDX Insight

D. Web Insight

Correct Answer: B

Reference: https://docs.citrix.com/en-us/tech-zone/design/reference-architectures/citrix-adm.html

Question 3:

A Citrix Engineer wants the Citrix Web App Firewall to respond with a page stored on the Citrix ADC when a violation is detected.

Which profile setting accomplishes this?

A. Redirect URL

B. RFC Profile

C. Default Request

D. HTML Error Object

Correct Answer: D

Reference: https://support.citrix.com/article/CTX140293

Question 4:

Scenario: A Citrix Engineer is setting up Citrix Application Delivery Management (ADM) in High Availability (HA) mode. The engineer creates both nodes and connects them to the same subnet.

Which IP address must the engineer configure on the Citrix ADM HA pair to allow instances to reconnect to Citrix ADM after a failover?

A. Virtual

B. Cluster

C. Subnet

D. Floating

Correct Answer: D

Question 5:

Which Front End Optimization technique causes the Citrix ADC to resize images before sending them to the client?

A. Minify

B. Shrink to Attributes

C. Compression

D. Inlining

Correct Answer: B

Reference: https://docs.citrix.com/en-us/citrix-adc/current-release/optimization/front-end- optimization.html

Question 6:

Which setting in the Cookie Consistency protection feature does a Citrix Engineer need to configure to ensure that all a cookie is sent using TLS only?

A. Encrypt Server Cookies > Encrypt All

B. Flags to Add in Cookies > Secure

C. Encrypt Server Cookies > Encrypt Session Only

D. Proxy Server Cookies > Session Only

Correct Answer: B

Reference: https://docs.citrix.com/en-us/citrix-adc/current-release/application- firewall/cookie-protection/ cookie-consistency-check.html

Question 7:

Scenario: A Citrix Engineer needs to forward the Citrix Web App Firewall log entries to a central management service. This central management service uses an open log file standard.

Which log file format should the engineer use in the Citrix Web App Firewall engine settings to designate the open log file standard?



C. W3C


Correct Answer: A

Reference: https://support.citrix.com/article/CTX136146

Question 8:

A Citrix Engineer wants to quietly track attempts that cause a web application to display a list of all user accounts.

Which action should the engineer enable to achieve this?

A. Stats

B. Block

C. Log

D. Learn

Correct Answer: D

Question 9:

A Citrix Engineer wants to create a configuration job template to add a DNS nameserver to each Citrix ADC instance. What is a valid variable name for the DNS nameserver?

A. %dns_nameserver%

B. %dns_nameserver

C. $dns_nameserver$

D. $dns nameserver

Correct Answer: C

Question 10:

Which Citrix Application Delivery Management (ADM) Analytics page allows a Citrix Engineer to monitor web application traffic?

A. Web Insight

B. WAN Insight

C. HDX Insight

D. Gateway Insight

Correct Answer: A

Reference: https://docs.citrix.com/en-us/citrix-application-delivery-management- service/analytics/hdxinsight.html

Question 11:

Scenario: A Citrix Engineer is implementing Integrated Caching to increase performance of a web application. The Application Engineer replaces a small logo on the main page with a new one. Later on, when the engineer attempts to access the page, the old logo is displayed. Which enabled setting in the Content Group would cause this to happen?

A. Ignore browser\’s reload request

B. Do not cache–if size exceeds 500 KB

C. Expire content after 60 seconds

D. Do not cache–if hits are less than 1

Correct Answer: A

Question 12:

Scenario: A Citrix Engineer is asked to implement multi-factor authentication for Citrix Gateway. The engineer creates the authentication policies and binds the policies to the appropriate bind points. The engineer creates a custom form using Notepad++ to format the page which will capture the user\’s credentials.

To which folder on the Citrix ADC will the engineer need to upload this form?

A. /flash/nsconfig/loginschema/LoginSchema

B. /var/netscaler

C. /flash/nsconfig/loginschema

D. /var

Correct Answer: A

Reference: https://docs.citrix.com/en-us/citrix-adc/current-release/system/authentication- andauthorization-for-system-user/two-factor-authentication-for-system-users-and-external-users.html

Question 13:

Which build-in TCP profile can a Citrix Engineer assign to a virtual server to improve performance for users who access an application from a remote office over an ATM connection?

A. nstcp_default_tcp_lfp

B. nstcp_default_tcp_lan

C. nstcp_default_tcp_interactive_stream

D. nstcp_default_tcp_lnp

Correct Answer: D

Question 14:

Which Citrix Web App Firewall profile setting can a Citrix Engineer configure to provide a response when a violation occurs?

A. Default Request

B. Redirect URL

C. Return URL

D. Default Response

Correct Answer: B

Reference: https://docs.citrix.com/en-us/netscaler/11-1/application- firewall/profiles/configuringprofiles.html

Question 15:

In which order is a client request to a protected web application processed?

A. CitrixWebApp Firewall, Load Balancing, Caching, Rewrite

B. Caching, Citrix Web App Firewall, Load Balancing, Rewrite

C. Citrix Web App Firewall, Caching, Load Balancing, Rewrite

D. Load Balancing, Citrix Web App Firewall, Caching, Rewrite

Correct Answer: C

