Question 76

Scenario: A Citrix Architect holds a design discussion with a team of Workspacelab members, and they capture the following requirements for the NetScaler design project.
* A pair of NetScaler MPX appliances will be deployed in the DMZ network and another pair in the internal network.
* High availability will be accessible between the pair of NetScaler MPX appliances in the DMZ network.
* Multi-factor authentication must be configured for the NetScaler Gateway virtual server.
* The NetScaler Gateway virtual server is integrated with the StoreFront server.
* Load balancing must be deployed for users from the workspacelab.com domain.
* The workspacelab users should be authenticated using Cert Policy and LDAP.
* All the client certificates must be SHA 256-signed, 2048 bits, and have UserPrincipalName as the subject.
* Single Sign-on must be performed between StoreFront and NetScaler Gateway.
After deployment, the architect observes that LDAP authentication is failing.
Click the Exhibit button to review the output of aaad debug and the configuration of the authentication policy.
Exhibit 1

Exhibit 2

What is causing this issue?
  • Question 77

    Under which two circumstances will a service be taken out of the slow start phase with automated slow start?
    (Choose Two)
  • Question 78

    Scenario: A Citrix Architect has sent the following request to the NetScaler:

    Which response would indicate the successful execution of the NITRO command?
  • Question 79

    Scenario: A Citrix Architect has deployed two MPX devices, 12.0.53.13 nc and MPX 11500 models, in high availability (HA) pair for the Workspace labs team. The deployment method is two-arm and the devices are installed behind a CISCO ASA 5585 Firewall. The architect enabled the following features on the NetScaler devices. Content Switching, SSL Offloading, Load Balancing, NetScaler Gateway, Application Firewall in hybrid security and Appflow. All are enabled to send monitoring information to NMAS 12.0.53.13 nc build. The architect is preparing to configure load balancing for Microsoft Exchange 2016 server.
    The following requirements were discussed during the implementation:
    * All traffic needs to be segregated based on applications, and the fewest number of IP addresses should be utilized during the configuration
    * All traffic should be secured and any traffic coming into HTTP should be redirected to HTTPS.
    * Single Sign-on should be created for Microsoft Outlook web access (OWA).
    * NetScaler should recognize Uniform Resource Identifier (URl) and close the session to NetScaler when users hit the Logoff button in Microsoft Outlook web access.
    * Users should be able to authenticate using either user principal name (UPN) or sAMAccountName.
    * The Layer 7 monitor should be configured to monitor the Microsoft Outlook web access servers and the monitor probes must be sent on SSL Which monitor will meet these requirements?
  • Question 80

    A Citrix Architect needs to configure advanced features of NetScaler by using StyleBooks as a resource in the Heat service.
    What is the correct sequence of tasks to be completed for configuring NetScaler using the Heat stack?