CCP-N 1Y0-341 Dumps Updated Oct 14, 2021 - Test4Cram [Q34-Q53]

Share

CCP-N 1Y0-341 Dumps | Updated  Oct 14, 2021 - Test4Cram

Master 2021 Latest The Questions CCP-N and Pass 1Y0-341  Real Exam!

NEW QUESTION 34
A Citrix Engineer needs to set up access to an internal application for external partners.
Which two entities must the engineer configure on the Citrix ADC to support this? (Choose two.)

  • A. SAML IdP Profile
  • B. SAML IdP Policy
  • C. SAML Policy
  • D. SAML Action

Answer: B,C

Explanation:
https://www.citrix.com/blogs/2015/04/09/how-to-use-saml-authentication-with-storefront-2-6/

 

NEW QUESTION 35
Scenario: A Citrix Engineer has established protections for web applications using Citrix Web App Firewall. One of the application owners is concerned that some negative traffic is passing through to the application servers. The owner wants confirmation that Citrix Web App Firewall is blocking negative traffic. Which CLI command can the engineer use to display statistics on a per-protection basis for the enabled protections?

  • A. stat appfw policyjabel <policy_label_name>
  • B. stat appfw signature <signature_object>
  • C. stat appfw profile <profile_name>
  • D. stat appfw policy <policy_name>

Answer: C

 

NEW QUESTION 36
Scenario: A Citrix Engineer needs to set up a NetScaler Web Logging (NSWL) client system for logging.
The engineer attempted to start the NSWL service on the client system and found that the service is NOT starting.
What could be causing this issue?

  • A. TCP 3011 is NOT open between the NetScaler SNIP and the NSWL client.
  • B. log.conf file is NOT properly configured on the NSWL client.
  • C. "nswl-verify" command has NOT yet been run on the NSWL client.
  • D. Web Logging feature is NOT installed on the NetScaler.

Answer: C

 

NEW QUESTION 37
A Citrix Engineer is notified that no traffic is reaching the protected web application. While investigating, the engineer notices that the Citrix Web App Firewall policy has 516,72 hits. What should the engineer check next?

  • A. The security checks in the global default profile
  • B. The security checks in the assigned profile
  • C. The policy expression
  • D. The HTML Error Object

Answer: B

 

NEW QUESTION 38
Which NetScaler owned IP address is used by NetScaler Management and Analytics System (NMAS) to communicate with NetScaler Instances?

  • A. VIP (Virtual IP)
  • B. NSIP (NetScaler IP)
  • C. CLIP (Cluster IP)
  • D. SNIP (Subnet IP)

Answer: B

 

NEW QUESTION 39
Scenario: A Citrix Engineer is asked to help improve the performance of a web application. After capturing and analyzing a typical session, the engineer notices a large number of user requests for the stock price of the company.
Which action can the engineer take to improve web application performance for the stock quote?

  • A. Create a dynamic content group.
  • B. Enable the Minify JavaScript optimization.
  • C. Create a static content group.
  • D. Enable the Combine CSS optimization.

Answer: B

 

NEW QUESTION 40
Which Citrix Web App Firewall profile setting can a Citrix Engineer configure to provide a response when a violation occurs?

  • A. Redirect URL
  • B. Default Response
  • C. Default Request
  • D. Return URL

Answer: A

 

NEW QUESTION 41
Scenario: A Citrix Engineer configures the Application Firewall for protecting a sensitive website. The security team captures traffic between a client and the website and notes the following cookie:
citrix_ns_id
The security team is concerned that the cookie name is a risk, as it can be easily determined that the NetScaler is protecting the website.
Where can the engineer change the cookie name?

  • A. Application Firewall Profile
  • B. Application Firewall Policy
  • C. Application Firewall Engine Settings
  • D. Application Firewall Default Signatures

Answer: A

 

NEW QUESTION 42
Scenario: A Citrix Engineer discovers a security vulnerability in one of its websites. The engineer takes a header trace and checks the Application Firewall logs.
The following was found in part of the logs:
method=GET request = http://my.companysite.net/FFC/sc11.html msg=URL length (39) is greater than maximum allowed (20).cn1=707 cn2=402 cs1=owa_profile cs2=PPE0 cs3=kW49GcKbnwKByByi3
+jeNzfgWa80000 cs4=ALERT cs5=2015 Which type of Application Firewall security check can the engineer configure to block this type of attack?

  • A. Start URL
  • B. Buffer Overflow
  • C. Cookie Consistency
  • D. Cross-site Scripting

Answer: D

 

NEW QUESTION 43
Which Citrix Web App Firewall profile setting can a Citrix Engineer configure to provide a response when a violation occurs?

  • A. Redirect URL
  • B. Default Request
  • C. Default Response
  • D. Return URL

Answer: C

Explanation:
Explanation/Reference: https://docs.citrix.com/en-us/netscaler/11-1/application-firewall/profiles/configuring-profiles.html

 

NEW QUESTION 44
A Citrix Engineer needs to protect a website that contains sensitive data such as employee ID numbers and customer ID numbers.
Which security check can the engineer implement to protect the sensitive data?

  • A. Field Formats
  • B. CSRF Form tagging
  • C. Safe Object Check
  • D. Content-type

Answer: C

Explanation:
The Safe Object check provides user-configurable protection for sensitive business information, such as customer numbers, order numbers, and country-specific or region-specific telephone numbers or postal codes.

 

NEW QUESTION 45
A Citrix Engineer needs to set up access to an internal application for external partners.
Which two entities must the engineer configure on the Citrix ADC to support this? (Choose two.)

  • A. SAML Policy
  • B. SAML Action
  • C. SAML ldP Profile
  • D. SAML ldP Policy

Answer: A,C

 

NEW QUESTION 46
Which variable will display the client's source IP address when added to an HTML Error Object page?

  • A. $[CLIENT.IP.SRC]
  • B. ${CLIENT.IP.SRC}
  • C. $(CLIENT.IP.SRC)
  • D. $<CLIENT.IP.SRC>

Answer: B

Explanation:
https://support.citrix.com/article/CTX140292

 

NEW QUESTION 47
Scenario: A Citrix Engineer observes that when going through NetScaler, user connections fail and users are unable to access Exchange server. However, users can connect directly to the Exchange server. After checking the logs, the engineer finds that the POST request is blocked through the NetScaler.
The log in/ var/log/ns.log is as follows:
Jul 20 11:00: 38 <local0.info>x.x.x. 1 07/20/2017:11:00:38 GMT ns 0-PPE-0:APPFW AF_400_RESP
29362 0: x.x.x.1 439800-PPEO- urlwdummy
https://test.abc.com/rpc/rpcproxy.dll?mail.sfmta.com:6004 Bad request headers. Content-length exceeds post body limit <blocked> Which parameter can the engineer modify to resolve the issue while maintaining security?

  • A. Increase the Maximum Header Length under nshttp_default_profile.
  • B. Increase the POST body limit using the HTTP profile.
  • C. Add an Application Firewall policy with the expression "HTTP.REQ.METHOD.EQ(\ "POST"\)" with APPFW_BYPASS profile bound.
  • D. Increase the POST body limit under common settings in Application Firewall profile settings.

Answer: D

 

NEW QUESTION 48
Which method is used by NetScaler Management and Analytics System (NMAS) to gather licensing information from NetScaler?

  • A. NITRO
  • B. CFLOW
  • C. APPFLOW
  • D. IPFLOW

Answer: A

 

NEW QUESTION 49
A Citrix Engineer observes that after enabling the security checks in Learning mode only in an Application Firewall profile, the NetScaler is blocking the non-RFC compliant HTTP packets. What can the engineer modify in the configuration to resolve this issue?

  • A. Set Default profile in application firewall settings as APPFW_BYPASS.
  • B. Disable Drop Invalid Requests in the HTTP Profile settings.
  • C. Enable Drop Invalid Requests in the HTTP Profile settings.
  • D. Set Undefined Action in application firewall settings as APPFW_BYPASS.

Answer: A

 

NEW QUESTION 50
Which option matches the following regular expression?

  • A. n 10\.10\.0\..
  • B. r.n 10.10.10.99
  • C. RUN 10.10.0.9
  • D. run 10.10.0.9
  • E. run 10.100.10.99

Answer: E

 

NEW QUESTION 51
Scenario: A Citrix Engineer is implementing Citrix Web App Firewall to protect a new web application. The engineer has created a profile, configured the relaxation rules, and applied signature protections. Additionally, the engineer has assigned the profile to a policy and bound the policy to the application.
What is the next step for the engineer in protecting the web application?

  • A. Enable logging on key protections.
  • B. Update the global default Citrix Wed App Firewall profile with the new signature file.
  • C. Enable the Signature Auto-Update feature.
  • D. Test the web application protections with a group of trusted users.

Answer: C

 

NEW QUESTION 52
What can a Citrix Engineer implement to protect against the accidental disclosure of personally identifiable information (PII)?

  • A. Safe Object
  • B. Cookie Consistency
  • C. HTML Cross-Site Scripting
  • D. Form Field Consistency

Answer: D

Explanation:
Explanation/Reference: https://docs.citrix.com/en-us/citrix-adc/current-release/application-firewall/form-protections/ form-field-consistency-check.html

 

NEW QUESTION 53
......

A fully updated 2021 1Y0-341 Exam Dumps exam guide from training expert Test4Cram: https://www.test4cram.com/1Y0-341_real-exam-dumps.html

Practice To 1Y0-341 - Test4Cram Remarkable Practice On your Citrix ADC Advanced Topics – Security, Management and Optimization Exam: https://drive.google.com/open?id=1TkkcomoaDtUP2DMGK_49p8e7vJxabxYq