Citrix CCA-AppDS-Gateway Certification Exam Sample Questions

CCA-AppDS-Gateway Exam Dumps, CCA-AppDS-Gateway Examcollection, CCA-AppDS-Gateway Braindumps, CCA-AppDS-Gateway Questions PDF, CCA-AppDS-Gateway VCE, CCA-AppDS-Gateway Sample Questions, CCA-AppDS-Gateway Official Cert Guide PDF, Citrix CCA-AppDS-Gateway PDFWe have prepared Citrix NetScaler 14.x Essentials and NetScaler Gateway (CCA-AppDS-Gateway) certification sample questions to make you aware of actual exam properties. This sample question set provides you with information about the Citrix CCA-AppDS-Gateway exam pattern, question formate, a difficulty level of questions and time required to answer each question. To get familiar with Citrix Certified Associate - App Delivery and Security (CCA-AppDS-Gateway) exam, we suggest you try our Sample Citrix CCA-AppDS-Gateway Certification Practice Exam in simulated Citrix certification exam environment.

To test your knowledge and understanding of concepts with real-time scenario based questions, we strongly recommend you to prepare and practice with Premium Citrix CCA-AppDS-Gateway Certification Practice Exam. The premium certification practice exam helps you identify topics in which you are well prepared and topics in which you may need further training to achieving great score in actual Citrix Certified Associate - App Delivery and Security (CCA-AppDS-Gateway) exam.

Citrix CCA-AppDS-Gateway Sample Questions:

01. A web application behind a NetScaler HTTP load balancing virtual server must record each client's real IP address in its access logs for billing. The servers' default gateway is a firewall that the server team cannot change, and the application can read a client address from a request header.
Which configuration meets the requirement?
a) Enable USIP on the service so that servers see the client address as the source
b) Enable USNIP so the SNIP on the server subnet carries the traffic
c) Enable L2 mode so client frames are bridged to the servers unchanged
d) Insert the client IP into a request header
 
02. During an attack from a single address, a Citrix Administrator adds this rule on a NetScaler:
add ns simpleacl block_attacker DENY -srcIP 203.0.113.66
New connection attempts from 203.0.113.66 now fail, and stat ns simpleacl shows the SimpleACL hits counter increasing. However, connections that 203.0.113.66 opened before the rule was added are still active.
What should the administrator do to end those connections?
a) Remove the rule and add it again with a -TTL value
b) Run flush simpleacl -estSessions
c) Run clear ns simpleacl and then add the rule again
d) Save the configuration so the rule applies to every session
 
03. Interface 1/1 on a NetScaler is an untagged member of VLAN 10. The switch port it connects to has become an 802.1q trunk that keeps VLAN 10 as its native, untagged VLAN and also carries VLAN 20. The appliance now needs a SNIP on VLAN 20, reached through the same interface.
How should the administrator add VLAN 20 to interface 1/1?
a) Bind 1/1 to VLAN 20 as an untagged member
b) Bind 1/1 to VLAN 20 untagged and to VLAN 10 tagged
c) Bind 1/1 to VLAN 20 as a tagged member
d) Enable L2 mode so VLAN 20 frames are bridged on 1/1
 
04. On the primary node of a NetScaler HA pair in non-INC mode, interfaces 1/1 and 1/2 are bound to failover interface set fis1, interface 1/3 has HA monitoring ON and is in no FIS or channel, and a route monitor is bound. All interfaces on both nodes are currently UP.
Which two events cause a failover?
(Choose two.)
a) Interface 1/1 on the primary goes DOWN while 1/2 stays UP
b) The route monitor that is bound to the primary node changes its state to DOWN
c) Interface 1/3 on the secondary node goes DOWN
d) A command propagated from the primary fails to run on the secondary node
e) The primary node's SSL card suffers a hardware failure
 
05. To trial a configuration change, a Citrix Administrator disabled command propagation on the primary node of a NetScaler HA pair, made and kept several changes on the primary, and then re-enabled propagation with set HA node -haProp ENABLED. The secondary node must now hold the same configuration as the primary, including the trial changes.
What should the administrator do next?
a) Run force HA sync
b) Run force HA failover so the secondary takes over with the new changes
c) Run sync HA files all to copy the changes to the secondary
d) Run save ns config on the secondary node to store the changes
 
06. NS-A is the primary node and NS-B the secondary node of a NetScaler HA pair running NetScaler 14.1. A Citrix Administrator must upgrade both nodes to a newer 14.1 build with the least disruption to traffic, and NS-A must be the primary node again when the work is complete.
Which sequence meets these requirements?
a) Upgrade NS-A first so that the primary runs the new build before NS-B pulls its configuration
b) Upgrade NS-B, force a failover, upgrade NS-A, then force a failover again
c) Upgrade NS-B, then upgrade NS-A without a failover, because the nodes resynchronize once their builds match
d) Upgrade NS-A and NS-B together, reboot both, then run force HA sync
 
07. After a failover in a NetScaler HA pair, users behind one upstream router cannot reach any virtual server, while users behind other routers are unaffected. The router's ARP table still maps the VIPs to the MAC address of the former primary node, and the router is known to ignore gratuitous ARP messages.
What should the Citrix Administrator configure so that a future failover does not cause this outage?
a) Enable L2 mode on both nodes so the new primary bridges frames for the old MAC
b) Run sync HA files all so the new primary inherits the old primary's MAC addresses
c) Add a VRID with add vrID and bind it to the traffic-carrying interfaces on both HA nodes
d) Group the router-facing interfaces in a failover interface set with HA monitoring on
 
08. Load balancing virtual server lb_vs_shop is configured as follows:
set lb vserver lb_vs_shop -persistenceType COOKIEINSERT -persistenceBackup SOURCEIP
A partner's client application does not store the NSC_ persistence cookie, but it sends a session cookie of its own with every request. Its requests are spread across all the services instead of staying on one server.
Which explanation fits this behavior?
a) Backup persistence engages only after the client's persistence cookie has expired
b) It returns a cookie, so backup never starts
c) The backup persistence timeout must be set before SOURCEIP backup engages
d) Backup persistence applies only when lb_vs_shop belongs to a persistence group
 
09. Service svc_crm is monitored by a monitor created with this command:
add lb monitor mon_crm HTTP -interval 5 -retries 3 -alertRetries 12
During a planned restart, the CRM server stops answering probes for about 30 seconds and then answers normally again.
What does the appliance do during this restart?
a) Keeps svc_crm UP and sends a monProbeFailed trap after 15 seconds
b) Marks svc_crm DOWN after 60 seconds and sends a monProbeFailed trap
c) Keeps svc_crm UP until 12 probes have failed, then marks it DOWN
d) Marks svc_crm DOWN; sends no trap
 
10. Users who type http://portal.example.com receive a connection error, because the only virtual server on that VIP is the SSL virtual server vs_portal on port 443. The Citrix Administrator must send those requests to https://portal.example.com without adding another virtual server or any policy.
Which configuration meets the requirement?
a) Add an HTTP virtual server on port 80 with a responder policy that redirects to the HTTPS URL
b) Enable HSTS on vs_portal and set a max-age so port 80 requests move to HTTPS
c) Configure -redirectFromPort 80 and -httpsRedirectUrl on vs_portal
d) Bind a rewrite policy to vs_portal that changes http:// links to https://

Answers:

Question: 01
Answer: d
Question: 02
Answer: b
Question: 03
Answer: c
Question: 04
Answer: b, e
Question: 05
Answer: a
Question: 06
Answer: b
Question: 07
Answer: c
Question: 08
Answer: b
Question: 09
Answer: d
Question: 10
Answer: c

Note: Please update us by writing an email on feedback@vmexam.com for any error in Citrix Certified Associate - App Delivery and Security (CCA-AppDS-Gateway) certification exam sample questions

Rating: 5 / 5 (108 votes)