Certification Provider: Citrix
Exam Name: Architecting a Citrix Networking Solution
Exam Code: 1Y0-440
Official Exam Time: 150 minutes
Number of questions in the Official Exam: 64 Q&As
Latest update time in our database: June 02,2023
1Y0-440 Official Exam Topics:
  • Topic1 :  Use the Citrix Methodology to plan projects.
  • Topic2 :  Identify/Prioritize Business Drivers and Requirements. /  Determine key Application Assessment and Categorization.
  • Topic3 :  Determine how to perform Capabilities Assessment. /  Determine the appropriate Multi-Site Deployments design.
  • Topic4 :  Determine how to review Configuration components for AAA /  Determine how to evaluate the Authentication Process and options
  • Topic5 :  Determine Session Management with AAA / VPN Configuration
  • Topic6 :  Determine how to Configure split tunneling and Authorization. /  Determine ICA Proxy Considerations
  • Topic7 :  Determine how to use Citrix Application Delivery Management for Citrix ADC Automation /  Determine how to utilize NITRO
  • Topic8 :  Determine how to create Stylebooks / Recommended Knowledge and Skills for 1Y0-440:
  • Topic9 : Identify and prioritize business drivers, constraints, and requirements using the Citrix Consulting methodology / Assess environment requirements and learn to apply leading design principles to address them in a multi-site Citrix ADC deployment.
  • Topic10 : Ability to evaluate environment documentation and assess necessary adjustments to meet required environment specifications. / Assess the environment’s current security configuration and make necessary adjustments to bring in line with leading security practices.
  • Topic11 : Configure different methods of client connection including Citrix Gateway, VPN, Split Tunneling and other proxy configuration options. / Citrix Networking technologies and concepts such as:
  • Topic12 :  Citrix Gateway /  Traffic Management
  • Topic13 : Time extension granted automatically /

Which method can the architect use to redirect the user accessing https://mail.citrix.com to https://mail.citrix.com?

Scenario: The following NetScaler environment requirements were discussed during a design meeting between a Citrix Architect and the Workspacelab team:

✑ All traffic should be secured, and any traffic coming into HTTP should be redirected to HTTPS.

✑ Single Sign-on should be created for Microsoft Outlook web access (OWA).

✑ NetScaler should recognize Uniform Resource Identifier (URI) and close the session to NetScaler when users hit the Logoff button in Microsoft Outlook web access.

✑ Users should be able to authenticate using user principal name (UPN).

✑ The Layer 7 monitor should be configured to monitor the Microsoft Outlook web access servers and the monitor probes must be sent on SSL.

Which method can the architect use to redirect the user accessing https://mail.citrix.com to https://mail.citrix.com?
A . add responder action act redirect “https://mail.citrix.com” -responseStatusCode 302 add responder policy pol HTT
B . RE
C . IS_VALID act
D . add lb server test SSL 10.107.149.243.80 -persistenceType NONE -cltTimeout 180 – redirectFromPort 80 -httpsRedirectUrl https://mail.citrix.com
E . add lb server test SSL 10.107.149.243.443 CpersistenceType NONE -cltTimeout 180 – redirectFromPort 80 -httpsRedirectUrl https://mail.citrix.com
F . add responder action act redirect “https:// + HTTP
RE
G . HOSTNAM
H . HTTP_URL_SAFE +
HTT
. RE
. URL_PATH_AND_QUER
. HTTP_URL_SAFE

” -responseStatusCode 302
add responder policy pol HTT
. RE
. IS_VALID act

Answer: C

On which firewall should the architect configure the access policy to permit the MEP communication between the sites?

Scenario: A Citrix Architect and a team of Workspacelab members met to discuss a Citrix ADC design project.

They captured the following requirements from this design discussion:

✑ All three (3) Workspacelab sites (DC, NOR, and DR) will have similar Citrix ADC configurations and design.

✑ The external Citrix ADC MPX1 appliances will have Global Server Load Balancing (GSLB) configured and deployed in Active/Active mode.

✑ ADNS service should be configured on the Citrix ADC to make it authoritative for domain nsg.workspacelab.com • In GSLB deployment, the DNS resolution should be performed to connect the user to the site with least network latency.

✑ On the internal Citrix ADC, load balancing for StoreFront services, Citrix XML services, and Citrix Director services must be configured.

✑ On the external Citrix ADC, the Gateway virtual server must be configured in ICA proxy mode.

Click the Exhibit button to view the logical representation of the network.

On which firewall should the architect configure the access policy to permit the MEP communication between the sites?
A . CISCO IPS 1 and Checkpoint FW1
B . CISCO IPS and CISCO IPS1
C . CISCO IPS and Checkpoint FW1
D . Checkpoint FW1 and DMZ ASA Firewall

Answer: D

On which firewall should the architect configure the access policy to permit the MEP communication between the sites?

Scenario: A Citrix Architect and a team of Workspacelab members met to discuss a Citrix ADC design project.

They captured the following requirements from this design discussion:

✑ All three (3) Workspacelab sites (DC, NOR, and DR) will have similar Citrix ADC configurations and design.

✑ The external Citrix ADC MPX1 appliances will have Global Server Load Balancing (GSLB) configured and deployed in Active/Active mode.

✑ ADNS service should be configured on the Citrix ADC to make it authoritative for domain nsg.workspacelab.com • In GSLB deployment, the DNS resolution should be performed to connect the user to the site with least network latency.

✑ On the internal Citrix ADC, load balancing for StoreFront services, Citrix XML services, and Citrix Director services must be configured.

✑ On the external Citrix ADC, the Gateway virtual server must be configured in ICA proxy mode.

Click the Exhibit button to view the logical representation of the network.

On which firewall should the architect configure the access policy to permit the MEP communication between the sites?
A . CISCO IPS 1 and Checkpoint FW1
B . CISCO IPS and CISCO IPS1
C . CISCO IPS and Checkpoint FW1
D . Checkpoint FW1 and DMZ ASA Firewall

Answer: D

On which firewall should the architect configure the access policy to permit the MEP communication between the sites?

Scenario: A Citrix Architect and a team of Workspacelab members met to discuss a Citrix ADC design project.

They captured the following requirements from this design discussion:

✑ All three (3) Workspacelab sites (DC, NOR, and DR) will have similar Citrix ADC configurations and design.

✑ The external Citrix ADC MPX1 appliances will have Global Server Load Balancing (GSLB) configured and deployed in Active/Active mode.

✑ ADNS service should be configured on the Citrix ADC to make it authoritative for domain nsg.workspacelab.com • In GSLB deployment, the DNS resolution should be performed to connect the user to the site with least network latency.

✑ On the internal Citrix ADC, load balancing for StoreFront services, Citrix XML services, and Citrix Director services must be configured.

✑ On the external Citrix ADC, the Gateway virtual server must be configured in ICA proxy mode.

Click the Exhibit button to view the logical representation of the network.

On which firewall should the architect configure the access policy to permit the MEP communication between the sites?
A . CISCO IPS 1 and Checkpoint FW1
B . CISCO IPS and CISCO IPS1
C . CISCO IPS and Checkpoint FW1
D . Checkpoint FW1 and DMZ ASA Firewall

Answer: D

Scenario: A Citrix Architect needs to design a new Citrix ADC Gateway deployment to provide secure RDP access to backend Windows machines.

Scenario: A Citrix Architect needs to design a new Citrix ADC Gateway deployment to provide secure RDP access to backend Windows machines.

Click the Exhibit button to view additional requirements collected by the architect during the design discussions.

To meet the customer requirements, the architect should deploy the RDP proxy through _______, using a _________ solution. (Choose the correct option to complete the sentence.)
A . ICAProxy, stateless gateway
B . CVPN; single gateway
C . CVPN; stateless gateway
D . ICAProxy; single gateway

Answer: B

On which firewall should the architect configure the access policy to permit the MEP communication between the sites?

Scenario: A Citrix Architect and a team of Workspacelab members met to discuss a Citrix ADC design project.

They captured the following requirements from this design discussion:

✑ All three (3) Workspacelab sites (DC, NOR, and DR) will have similar Citrix ADC configurations and design.

✑ The external Citrix ADC MPX1 appliances will have Global Server Load Balancing (GSLB) configured and deployed in Active/Active mode.

✑ ADNS service should be configured on the Citrix ADC to make it authoritative for domain nsg.workspacelab.com • In GSLB deployment, the DNS resolution should be performed to connect the user to the site with least network latency.

✑ On the internal Citrix ADC, load balancing for StoreFront services, Citrix XML services, and Citrix Director services must be configured.

✑ On the external Citrix ADC, the Gateway virtual server must be configured in ICA proxy mode.

Click the Exhibit button to view the logical representation of the network.

On which firewall should the architect configure the access policy to permit the MEP communication between the sites?
A . CISCO IPS 1 and Checkpoint FW1
B . CISCO IPS and CISCO IPS1
C . CISCO IPS and Checkpoint FW1
D . Checkpoint FW1 and DMZ ASA Firewall

Answer: D

Where should the architect enable the options to allow the customer to complete their requirement?

Scenario: A Citrix Architect needs to design a new NetScaler Gateway deployment for a customer. During the design discussions, the architect learns that the customer would like to allow external RDP connections to internal Windows machines but does NOT want client drive redirection enabled on these connections.

Where should the architect enable the options to allow the customer to complete their requirement?
A . NetScaler Gateway global settings
B . RDP bookmark
C . Session policy
D . RDP server profile
E . Session profile
F . RDP client profile

Answer: F

What can help a Citrix Architect prepare to discuss time scales and resource requirements?

What can help a Citrix Architect prepare to discuss time scales and resource requirements?
A . Creating a high-level project plan.
B . Meeting with each member of the project team to assign tasks.
C . Designing the new environment.
D . Setting expectations with the project’s key stakeholders.
E . Identifying challenges associated with the project.

Answer: A

On which firewall should the architect configure the access policy to permit the MEP communication between the sites?

Scenario: A Citrix Architect and a team of Workspacelab members met to discuss a Citrix ADC design project.

They captured the following requirements from this design discussion:

✑ All three (3) Workspacelab sites (DC, NOR, and DR) will have similar Citrix ADC configurations and design.

✑ The external Citrix ADC MPX1 appliances will have Global Server Load Balancing (GSLB) configured and deployed in Active/Active mode.

✑ ADNS service should be configured on the Citrix ADC to make it authoritative for domain nsg.workspacelab.com • In GSLB deployment, the DNS resolution should be performed to connect the user to the site with least network latency.

✑ On the internal Citrix ADC, load balancing for StoreFront services, Citrix XML services, and Citrix Director services must be configured.

✑ On the external Citrix ADC, the Gateway virtual server must be configured in ICA proxy mode.

Click the Exhibit button to view the logical representation of the network.

On which firewall should the architect configure the access policy to permit the MEP communication between the sites?
A . CISCO IPS 1 and Checkpoint FW1
B . CISCO IPS and CISCO IPS1
C . CISCO IPS and Checkpoint FW1
D . Checkpoint FW1 and DMZ ASA Firewall

Answer: D