Section 5: Monitoring and Troubleshooting Citrix Web App Firewall
Ask AstroTutor
Scenario: A Citrix Engineer is notified that improper requests are reacting the web application. While investigating, the engineer notices that the Citrix Web App Firewall policy has zero hits.
What are two possible causes for this within the Citrix Web App Firewall policy? (Choose two.)
AThe expression is incorrect.
BIt has been assigned an Advanced HTML profile.
CIt is NOT bound to the virtual server.
DIt has been assigned the built-in APPFW_RESET profile.
0
Question 2
Section 5: Monitoring and Troubleshooting Citrix Web App Firewall
0
Question 3
Section 2: Citrix Web App Firewall Profiles and Policies
0
Question 4
Section 9: Introduction and Configuration of Citrix Application Delivery Management
Statistics for which three types of violations are presented on the App Security Dashboard? (Choose three.)
AWeb App Firewall protection
BIP Reputation
CSSL Enterprise Policy
DSignature
EAAA
Which Citrix Web App Firewall profile setting can a Citrix Engineer configure to provide a response when a violation occurs?
ADefault Request
BRedirect URL
CReturn URL
DDefault Response
Scenario: A Citrix Engineer has configured Citrix Application Delivery Management (ADM) to monitor applications presented by Citrix ADC appliances. When reviewing the App Security Dashboard, the engineer finds no data.
What must the engineer do to ensure data is being collected from the applications?
AUpdate the password stored in the instance profile on Citrix ADM.
BPoint the default route on Citrix ADM to the subnet with the NSIPs of the Citrix ADC appliances.
CEnable AppFlow for Security Insight on the instances in Citrix ADM.
DEnable the Web App Firewall feature on the Citrix ADC appliances.
Scenario: A Citrix Engineer needs to limit Front End Optimization (FEO) on a web application to mobile users with mobile devices. The engineer deckles to create and bind an FEO policy.
Which advanced expression should the engineer use in the FEO policy?
Section 2: Citrix Web App Firewall Profiles and Policies
Question 8
Section 9: Introduction and Configuration of Citrix Application Delivery Management
Question 9
Section 9: Introduction and Configuration of Citrix Application Delivery Management
Question 10
Section 13: Front End Optimization
Question 11
Section 3: Implementing Citrix Web App Firewall Protections
Question 12
Section 5: Monitoring and Troubleshooting Citrix Web App Firewall
Question 13
Section 2: Citrix Web App Firewall Profiles and Policies
Question 14
Section 9: Introduction and Configuration of Citrix Application Delivery Management
Question 15
Section 9: Introduction and Configuration of Citrix Application Delivery Management
Question 16
Section 2: Citrix Web App Firewall Profiles and Policies
Question 17
Section 3: Implementing Citrix Web App Firewall Protections
Question 18
Section 3: Implementing Citrix Web App Firewall Protections
Question 19
Section 5: Monitoring and Troubleshooting Citrix Web App Firewall
Question 20
Section 12: Integrated Caching
Question 21
Section 5: Monitoring and Troubleshooting Citrix Web App Firewall
Question 22
Section 11: Managing Citrix ADC Configurations
Question 23
Section 6: Citrix ADC Security and Filtering
Question 24
Section 6: Citrix ADC Security and Filtering
Question 25
Section 6: Citrix ADC Security and Filtering
Ask AstroTutor
0
Ask AstroTutor
0
Ask AstroTutor
0
Ask AstroTutor
0
Ask AstroTutor
0
Ask AstroTutor
0
Ask AstroTutor
0
Ad
Want a break from the ads?
Become a Supporter and enjoy a completely ad-free experience, plus unlock Learn Mode, Exam Mode, AstroTutor AI, and more.
Ask AstroTutor
0
Ask AstroTutor
0
Ask AstroTutor
0
Ask AstroTutor
0
Ask AstroTutor
0
Ask AstroTutor
0
Ask AstroTutor
0
Ask AstroTutor
0
Ask AstroTutor
0
Ask AstroTutor
0
Ask AstroTutor
0
Ask AstroTutor
0
Scenario: A Citrix Engineer notices that a web page takes a long time to display. Upon further investigation, the engineer determines that the requested page is referencing 48 other elements for download.
Which Front End Optimization technique can the engineer enable on the Citrix ADC to improve time-to-display?
ADomain Sharding
BRemove comments from HTML
CMove to Head Tag
DShrink to Attributes
Which Citrix Web App Firewall profile setting can a Citrix Engineer Implement to remove non-essential content from web files to improve response time?
AExclude Uploaded Files from Security Checks
BExempt Closure URLs from Security Checks
CStrip HTML Comments
DEnable Form Tagging
Which Citrix Application Delivery Management (ADM) Analytics page allows an engineer to measure the ICA Round-Trip Time for user connections?
ASecurity Insight
BTCP Insight
CHDX Insight
DWeb Insight
EGateway Insight
Scenario: A Citrix Engineer is using Citrix Application Delivery Management (ADM) to manage SSL certificates across all Citrix ADC instances. The engineer wants to distribute a new certificate to the devices.
What, in addition to the certificate file, must the engineer provide when uploading the new certificate?
ARoot Certificate
BSerial Number File
CCertificate Signing Request (CSR)
DKey File
Scenario: A Citrix Engineer is asked to help improve the performance of a web application. After capturing and analyzing a typical session, the engineer notices a large number of requests for small graphics files, each smaller than 10KB.
Which action can the engineer take to improve web application performance for the graphics files?
AEnable the Convert GIF to PNG image optimization.
BCreate a static content group.
CEnable the Shrink to Attributes image optimization.
DCreate a dynamic content group.
A Citrix Engineer wants to quietly track attempts that cause a web application to display a list of all user accounts.
Which action should the engineer enable to achieve this?
AStats
BBlock
CLog
DLearn
Which two conditions are required for Signature Auto-Update to work properly? (Choose two.)
AThe update interval must be set to a value greater than zero.
BInternet connectivity must be available.
CDNS resolution must be configured.
DThe syslog tile cannot be full.
Scenario: A Web Application Developer asked a Citrix Engineer to implement Citrix Web App Firewall protections. To provide consistency in branding, the developer asked that the web server provide a custom message when a violation occurs.
Which profile setting does the engineer need to configure to provide the custom message?
ARFC Profile
BRedirect URL
CContent Type Default Response
DHTML Error Object
What is required for implementing the Citrix Application Delivery Management (ADM) Service?
ACitrix Hypervisor
BCitrix Virtual Apps and Desktops
CCitrix ADC Instances
DCitrix Cloud subscription
Which Citrix Application Delivery Management (ADM) Analytics page allows an engineer lo monitor the metrics of end-point analysis and authentication failures?
AWeb Insight
BGateway Insight
CSecurity Insight
DHDX Insight
Scenario: A Citrix Engineer has enabled the Learn function for a Citrix Web App Firewall profile.
After a period of time, the engineer notices that Citrix Web App Firewall is no longer learning any new rules.
What would cause Citrix Web App Firewall to stop learning?
AThe Citrix Web App Firewall feature is NOT licensed.
BThe Citrix Web App Firewall profile was unbound from (he application.
CThe Citrix Web App Firewall has reached Its capacity of 500 Learn transactions.
DThe Citrix Web App Firewall Learn database has reached its capacity of 20 MB.
Scenario: A Citrix Engineer needs to block requests from a list of IP addresses in a database maintained by the Security team. The Security team has built a web application that will send a response of either “Blocked” or “Allowed,” based on whether the given IP address is on the list.
Which expression should the engineer use to extract the status for policy processing?
AHTTP.RES.BODY(1000)
BHTTP.RES.CONTENT_LENGTH.GT(0)
CHTTP.RES.HEADER(“Connection”)
DHTTP.RES.STATUS
Scenario: A Citrix Engineer is reviewing the log files for a protected application. The engineer discovers a lot of errors pertaining to Invalid data being supplied by users.
Which protection can the engineer implement at the Citrix Web App Firewall to reduce these errors?
ACross-Site Request Forgeries (CSRF)
BForm Field Consistency
CHTML SQL Injection
DField Format
Scenario: A Citrix Engineer is notified that no traffic is reaching the protected web application. While investigating, the engineer notices that the Citrix Web App Firewall policy has 516,723 hits.
What should the engineer check next?
AThe policy expression
BThe security checks in the assigned profile
CThe security checks in the global default profile
DThe HTML Error Object
Scenario: A Citrix Engineer is implementing Integrated Caching to increase performance of a web application. The Application Engineer replaces a small logo on the main page with a new one. Later on, when the engineer attempts to access the page, the old logo is displayed.
Which enabled setting in the Content Group would cause this to happen?
AIgnore browser’s reload request
BDo not cache - if hits are less than 1
CExpire content after 60 seconds
DDo not cache - if size exceeds 500 KB
Scenario: A Citrix Engineer wants to protect a web application using Citrix Web App Firewall. After the Web App Firewall policy is bound to the virtual server, the engineer notices that Citrix Web App Firewall Is NOT blocking bad requests from clients.
Which tool can help the engineer view the traffic that is passing lo and from the client?
Anstrace
Bnsconmsg
Caaad.debug
Dsyslog
A Citrix Engineer wants to create a configuration job template to add a DNS nameserver to each Citrix ADC instance.
What is a valid variable name for the DNS nameserver?
A%dns_nameserver
B$dns_nameserver$
C$dns_nameserver
D%dns_nameserver%
How can a Citrix Engineer ensure that the Citrix ADC rejects all HTTP/0.9 requests?
ASelect 'Change HTTP Parameters' under System > Settings.Select 'Mark HTTP/0.9 Requests as Invalid'.
BModify the default HTTP profile and select 'Mark HTTP/0.9 Requests as Invalid'.Bind the default HTTP profile globally.
CCreate an HTTP profile and select 'Mark HTTP/0.9 Requests as Invalid’.Assign the HTTP profile to the service group.
DCreate an HTTP profile and select 'Mark HTTP/0.9 Requests as Invalid'.Assign the HTTP profile to the virtual server.
Which two configuration items does the PCI-DSS Compliance report check to ensure compliance? (Choose two.)
ABound SSL certificates
BDefault credentials
CResponder policies
DRewrite policies
Scenario: A Citrix Engineer is asked to implement multi-factor authentication for Citrix Gateway. The engineer creates the authentication policies and binds the policies to the appropriate bind points. The engineer creates a custom form using Notepad++ to format the page which will capture the user's credentials. The engineer uploads the form and binds the form to the authentication policy.
When the engineer connects to the Citrix Gateway for validation testing, the form fields are NOT correctly displayed.
What is the most likely cause of this display issue?
AThe login schema contains invalid XML syntax.
BThe authentication policies are bound in the wrong order.
CThe first authentication server is offline.
DThe policy bindings are NOT consistent with the login schema.