Question 36

Scenario: A Citrix Architect needs to design a new solution within Amazon Web Services (AWS) The architect would like to create a high availability Citrix ADC VPX pair to provide load balancing for applications hosted in the AWS deployment within a single availability zone which will receive traffic arriving from the Internet.
Which configuration should the architect choose to accomplish this?
  • Question 37

    What are three potential risks when examining the disaster recovery plan and implementation for a company?
    (Choose three)
  • Question 38

    Scenario: A Citrix Architect needs to assess an existing on-premises NetScaler deployment which includes Advanced Endpoint Analysis scans. During a previous security audit, the team discovered that certain endpoint devices were able to perform unauthorized actions despite NOT meeting pre-established criteria.
    The issue was isolated to several endpoint analysis (EPA) scan settings.
    Click the Exhibit button to view the endpoint security requirements and configured EPA policy settings.
    Which setting is preventing the security requirements of the organization from being met?
  • Question 39

    Scenario: A Citrix Architect needs to assess an existing NetScaler configuration. The customer recently found that certain user groups were receiving access to an internal web server with an authorization configuration that does NOT align with the designed security requirements.
    Click the Exhibit button view the configured authorization settings for the web server.

    Which item should the architect change or remove to align the authorization configuration with the security requirements of the organization?
  • Question 40

    Scenario: A Citrix Architect and a team of Workspacelab members met to discuss a Citrix ADC design project. They captured the following requirements from this design discussion:
    * All three (3) Workspacelab sites (DC, NOR, and DR) will have similar Citrix ADC configurations and design.
    * The external Citrix ADC MPX1 appliances will have Global Server Load Balancing (GSLB) configured and deployed in Active/Active mode.
    * ADNS service should be configured on the Citrix ADC to make it authoritative for domain nsg.workspacelab.com * In GSLB deployment, the DNS resolution should be performed to connect the user to the site with least network latency.
    * On the internal Citrix ADC, load balancing for StoreFront services, Citrix XML services, and Citrix Director services must be configured.
    * On the external Citrix ADC, the Gateway virtual server must be configured in ICA proxy mode.
    Click the Exhibit button to view the logical representation of the network.

    On which firewall should the architect configure the access policy to permit the MEP communication between the sites?