1Y0-440 Architecting A Citrix Networking Solution Ion

Transcription

PreparationExam Overview1Y0-4401Y0-440 Architecting a CitrixNetworking SolutionContributors & MarksExam Preparation Guide 2.0March 29, 20191

Exam OverviewThis exam preparation guide is designed to providecandidates with necessary information about the 1Y0-440exam, including study resources and ways to interpret theexam objectives to better enable candidates to assess thetypes of questions that may be asked during the exam. Pleasebe aware that the content of this guide in no way ensures apassing score on the certification exam.Contributors & MarksPreparationDisclaimer2

Contributors & MarksPreparationExam OverviewTable of ContentsExam OverviewNumber of ItemsPassing ScoreTime LimitIntended AudienceRegistration and AdministrationRetake PolicyContributors & Marks444445Prep Guide AuthorSubject Matter Experts (SMEs)NoticeMarks21212222Preparing for the ExamRecommended Knowledge and SkillsRecommended Product ExperienceRecommended TrainingUnauthorized Preparation MaterialsSection Titles and WeightsInterpretation of ObjectivesSections, Objectives, Examples, and ReferencesAppendix: Practice66778910183

Contributors & MarksPreparationExam OverviewExam OverviewNumber of ItemsIntended AudienceThe 1Y0-440 exam is a 64-question exam written in English. Some of the itemson this exam will not be scored and thus will not affect your final result in anyway. The unscored items are included in this exam solely for research purposes.The 1Y0-440 exam is focused on those topics that are most important for ITProfessionals with extensive networking and Citrix ADC experience. This exam certifiesthat exam takers have the requisite knowledge and skills required for defining theoverall structure or architecture of a Citrix networking environment. This exam coversadvanced Citrix networking configurations and leading Citrix design principles.Passing ScoreThose who assess and design complex network architecture of a Citrix networkenvironments may hold various job titles such as:The passing score for this exam is 65%. Citrix Architects Citrix ConsultantsTime LimitType of CandidateTime Limits*Native English speakers150 minutesNon-native English speakersthat take the exam incountries where English is aforeign language150 minutesNon-native English speakersthat take the exam incountries where English isNOT a foreign language150 minutesNotesThis exam is administered at Pearson VUE testing centers worldwide. To learn moreabout the rules and process of taking an exam, please visithttp://training.citrix.com/exams.Time extension granted automatically 30 minutes(time extension) 30 minutes(time extension)Registration and AdministrationMust request time extension fromCitrix. Submit your request here: TimeExtension RequestThe time limit for this exam is 150 minutes. The total seat time is 150 25 minutes.The total seat time includes times allotted for the NDA and surveys.Worldwide, visit the Pearson VUE website (http://www.pearsonvue.com/citrix) tolocate a testing center in your area and register for an exam. You may also register inperson at any Pearson VUE testing center. If you reside in the United States or Canada,you may also register by calling 1-800-931-4084.Note: A 7 USD surcharge will be added to phone registrations.4

ExamOverviewExamOverviewRetake PolicyCandidates must wait 24 hours from their original appointment time before theycan register to retake an exam. After a second attempt, and any attempt thereafter,the candidate must wait 14 calendar days to retake the exam.For more information about our policies, including the Citrix Exam Retake Policyand the Candidate Conduct Policy, please visit http://training.citrix.com/examsContributors & MarksPreparationBreach of this policy can result in sanctions up to and including a ban from takingCitrix exams and/or decertification.5

Contributors & MarksPreparationPreparationExam OverviewPreparing for the ExamRecommended Knowledge and SkillsCandidates should have knowledge of the following prior to taking this exam: Identify and prioritize business drivers, constraints, and requirements using theCitrix Consulting methodology. Assess environment requirements and learn to apply leading design principles toaddress them in a multi-site Citrix ADC deployment. Apply advanced authentication and load balancing principles. Utilize Citrix ADC Application Delivery Management for monitoring Automationand Orchestration. Identify steps to take in advanced troubleshooting scenarios. Ability to evaluate environment documentation and assess necessaryadjustments to meet required environment specifications. Assess the environment’s current security configuration and make necessaryadjustments to bring in line with leading security practices. Configure different methods of client connection including Citrix Gateway, VPN,Split Tunneling and other proxy configuration options.Recommended Product ExperienceCitrix Networking technologies and concepts such as: Citrix Methodology and Assessment Citrix ADC Deployment Citrix Application Delivery Management v12.x Citrix Gateway Citrix ADC Security Traffic Management AppExpert Application Firewall TCP/HTTP/SSL Authentication, Authorization and Accounting (AAA) GSLB (Global Server Load Balancing) Application Delivery Management Automation and Orchestration Nitro API6

Exam OverviewRecommended TrainingCitrix Education recommends that candidates have hands-on experience with‘Architecting a Citrix Networking Solution’ prior to taking this exam. One of thebest ways to do this is by taking a formal Citrix training course. The followingcourse provides training on assessment, design and advanced configuration of aAdvanced Citrix Networking environment.As with all Citrix exams, it is recommended that candidates get hands-onexperience by working directly with products covered on the exam.Citrix Education monitors exam results to ensure that candidates are not usingunauthorized materials to prepare for exams. If it is determined that a candidateused unauthorized materials to prepare for an exam, the candidate’s score will beinvalidated and his or her certification will be revoked.When looking for materials in addition to authorized Citrix training to prepare forcertification, Citrix Education recommends that you visithttp://www.certguard.com to ensure that a site is indeed legitimate. This site flagswebsites that are acting as brain dumps, which have unauthorized materials.Contributors & MarksPreparationCNS-420: Architecting a Citrix Networking Solution (instructor-led training courseor self-study)Unauthorized Preparation Materials7

Section Titles and WeightsContributors & MarksPreparationExam OverviewSectionWeightNetworking Methodology and Assessment11%Citrix ADC Deployment Architecture and Topology14%Advanced Authentication and Authorization21%Citrix ADC Security12%VPN Configuration12%Advanced Traffic Management11%Citrix Application Delivery Management Automation and Orchestration19%TOTAL100%The section weights included in this guide are intended to help you in understanding howmuch of the exam is devoted to the topics listed. In fact, the percentages directly map tothe number of questions on the exam. For example, if an exam has 60 questions, andSection 1 is weighted at 50%, then 30 of the questions on the exam will relate to Section1 (60*50% 30).Please be warned that section weights are NOT used to calculate your score. Scoring is farmore complicated as exam questions may be given different weights based on theiroverall importance. Because some questions may have different point values assigned tothem, section weights and exam scores do not always have a one-to-one correlation.For more information on how scoring works in Citrix exams read the blog The ScoringSecrets for Citrix Exams - Divulged.8

PreparationExam OverviewInterpretation of ObjectivesCandidates should refer to the objectives and examples listed in this guide in orderto determine which topics will be on the exam, as well as examples of the topicsthat could be tested.Note: The examples listed in the “Sections, Objectives, Examples and References”section of this guide do NOT encompass all potential topics that could be tested. Theexamples are only provided as guidance.For example, if the objective reads, “Assess the printing infrastructure” and one ofthe examples reads, “Perform printer driver stress testing” candidates could expectto see:The objectives and examples for this exam were developed by Exam Project Managersand Subject Matter Experts (SMEs) based on identified tasks that relate to managingand supporting Citrix Networking solutions. A scenario describing a printing infrastructure: Scenario: A Citrix Architect is assessing the current printinginfrastructure at CGE. As part of the assessment, the architect wants toperform printer driver stress testing.The number of questions written for each objective relates directly to the importanceof that objective and is proportional to how frequently that task is performed.Contributors & Marks A question that requires determining how to assess the printer drivers: How can the architect assess which printer drivers are in use in thecurrent environment?9

Exam OverviewSections, Objectives, Examples and References Citrix Product Documentation: http://docs.citrix.comCitrix Support: http://www.citrix.com/supportCitrix Blogs: amplesReferencesContributors & MarksPreparationSection 1: Networking Methodology and Assessment1.1Use the Citrix Methodology to plan projects.Citrix MethodologyModule-1 of CNS-420 Architecting a Citrix Networking Solution1.2Identify/Prioritize Business Drivers andRequirements.Process success criteria, Identify criticalbusiness driver.Module-1 of CNS-420 Architecting a Citrix Networking Solution1.3Determine how to Segment users into defined usecases.Discuss existing user -1 of CNS-420 Architecting a Citrix Networking Solution1.4Determine key Application Assessment andCategorization.Evaluate business critical and businessoptional resources.Module-1 of CNS-420 Architecting a Citrix Networking Solution1.5Determine how to perform CapabilitiesAssessment.Gain an understanding of currentenvironment configurations and identifyrisk.Module-1 of CNS-420 Architecting a Citrix Networking Solution10

ObjectiveNumberObjectiveExamplesReferencesExam OverviewSection 2: Citrix ADC Deployment Architecture and Topology2.1 2.2PreparationDetermine the appropriate Multi-Site Deploymentsdesign.Determine how to design Multi TennantInfrastructure.Citrix Gateway double hop training scenarioSecure web gateway scenariosHow to use Citrix ADC across DMZ, PCI, andInternalMulti-tiered architecture (Citrix ADC in DMZpointing to NS to Internal)Design across datacentersSDX Topology and 1081Module-2 of CNS-420 Architecting a Citrix Networking tions.htmlModule-2 of CNS-420 Architecting a Citrix Networking Solution2.3Determine how to analyze Citrix Cloud design.Citrix ADC on Azure, AWS, Citrix x.htmlContributors & subscriptions.htmlModule-2 of CNS-420 Architecting a Citrix Networking SolutionSection 3: Advanced Authentication and Authorization3.1Determine how to review Configurationcomponents for AAAEvaluate current AAA design and m/article/CTX218050Module-3 of CNS-420 Architecting a Citrix Networking Solution11

Exam 3.2Determine how to evaluate the AuthenticationProcess and options https://support.citrix.com/article/CTX200323 Determine clientless access through theGateway to allow access to PublishedApplications or SAAS Applications.Evaluate authentication and ss-sett-tsk.htmlPreparationModule-3 of CNS-420 Architecting a Citrix Networking Solution3.3Determine Session Management with AAADetermine how to evaluate the AuthenticationProcess and dam/citrix/en a-session-timeout-with-aaa.pdfContributors & -pol-tsk.htmlModule-3 of CNS-420 Architecting a Citrix Networking Solution12

Exam 3.4Determine how to utilize and implement MultiFactor (nFactor) AuthenticationnFactor credential EvaluationnFactor Use service-for-xenapp-xendesktop/PreparationModule-3 of CNS-420 Architecting a Citrix Networking SolutionSection-4 Citrix ADC Security4.1Determine how to evaluate the Authorizationconfiguration optionsCommand policies, Access e/CTX138835Contributors & a-tm/authorization.htmlModule-4 of CNS-420 Architecting a Citrix Networking Solution4.2Determine the End Point Analysis ConsiderationsPre-authentication, post-authentication, advancedend point analysis (opswat), quarantine ntine-grp-config-tskModule-4 of CNS-420 Architecting a Citrix Networking Solution13

Exam Overview4.3Define the correct protection against specific Layer4-7 attacksAccess Control List , HTTP DOS Protection, RateLimiting ,HTTP Profile SYN Cookies, AppQoE,Application Firewall ,IP expert/rate-limiting.htmlModule-4 of CNS-420 Architecting a Citrix Networking PreparationSection-5 VPN Configuration5.1Contributors & Marks5.2Determine how to evaluate VPN Access Scenariosand Configuration.Determine how to Configure split tunneling andAuthorization.VPN Networking: Split Tunnel, Intranet IPs, IntranetApplications, Authorization Policies, clientless, PCoIPProxy, RDP ay/12/vpn-user-config.htmlConfigure split tunneling and Authorization.Global override settings and policy configuration toseparate the traffic as 9Module-5 of CNS-420 Architecting a Citrix Networking rt.citrix.com/article/CTX205285Module-5 of CNS-420 Architecting a Citrix Networking Solution5.35.4Determine RDP Proxy ConfigurationDetermine ICA Proxy ConsiderationsStateless Gateway solutions, Single Gatewaysolutions, Deployment through CVPN anddeployment through ICA way/12/rdp-proxy.htmlPublish application launch process, Applicationenumeration, Storefront CTX139963Module-5 of CNS-420 Architecting a Citrix Networking SolutionModule-5 of CNS-420 Architecting a Citrix Networking Solution14

ObjectiveNumberObjectiveExamplesReferencesExam OverviewSection 6: Advanced Traffic Management6.1Determine how to implement Advanced LoadBalancing setup Preparation Load Balancing: Load Balancing Profile Creation.Exchange and OWA.Link Load Balancing and Data Stream configuration.MBF PBR forwarding Tables.How to configure load balancing across DMZ, PCI, andInternal multi-tiered architecture.Advanced LB – Traffic settings/Spill over/bindingtcp/http/Netprofiles / Advanced Load BalancingSettings.LB of Exchange and active sync servers / Data streams /Link Load balancing, Firewall Load balancing anddifferent deployment en-wrapper-10-con.htmlContributors & ow-start-con.htmlModule-6 of CNS-420 Architecting a Citrix Networking Solution6.2Determine how to Implement Advanced GlobalServer Load Balancing setup GSLB: Storefront load balancing across Data Centers.Multi Data Center Monitoring.Citrix ADC MultiData Center Architecture.GSLB for SF LB across DC’s, Site persistence/ adbalancing/methods.htmlModule-6 of CNS-420 Architecting a Citrix Networking Solution15

ObjectiveNumberObjectiveExamplesReferencesExam OverviewSection-7: Citrix Application Delivery Management Automation and Orchestration7.1Determine how to use Citrix Application DeliveryManagement for Citrix ADC AutomationEvaluate configuration jobs, certificate management,monitor device and application status, automatedfirmware tmlModule-7 of CNS-420 Architecting a Citrix Networking SolutionContributors & Marks7.2Determine how to assess the Orchestration abilityIntegration of Citrix ADC products with open stackcloud odule-7 of CNS-420 Architecting a Citrix Networking Solution16

Exam ne how to utilize NITRONITRO CTX219929PreparationModule-7 of CNS-420 Architecting a Citrix Networking Solution7.4Determine how to create StylebooksStylebooks formats, Components, Use Stylebooks ina given utors & -userdefined-stylebooks-in-mas.htmlModule-7 of CNS-420 Architecting a Citrix Networking Solution17

Contributors & MarksPreparationExam OverviewAppendix: PracticeIntroductionExam-takers should refer to the objectives listed in the “Sections,Objectives, Examples and References” section of this guide in order todetermine which topics will be on the exam and examples of topics for eachobjective.For example, if the objective reads, "Identify the appropriate plug-in to use,"exam-takers should expect to see: A "scenario describing the need to install a specific XenApp Plug-in"Scenario: XenDesktop was recently implemented in anenvironment. A Citrix Administrator in the environment needs to tellthe end users which Citrix Receiver type to install in order to accesstheir XenDesktop resources. The end users in the environment willneed to access hosted applications through Receiver for Web. A question that requires you to "determine which Citrix Receiver typeto install" based on the scenarioWhich Citrix Receiver type should the administrator instruct the endusers to install?[Sample Question 1]Which HTTP request method can a Citrix Architect utilize to send the API NITRO call to modifythe attributes of an entity in the Citrix ADC configuration?A.B.C.D.GETPOSTPUTHEADCorrect Answer: CObjective: Determine how to utilize NITROSource: CNS-420 Module 718

Appendix: PracticeContributors & MarksPreparationExam Overview[Sample Question 2]Scenario: A Citrix Architect needs to deploy a Citrix ADC for Workspacelab, which will provideapplication load balancing services to Partnerlab and Vendorlab.Sample Question 2 Cont.Answer: AThe setup requirements are as follows: A pair of Citrix ADC MPX appliances will be deployed in the DMZ network. High Availability will be accessible on the Citrix ADC MPX in the DMZ Network. Load Balancing should be performed for the mail servers for Partnerlab and Vendorlab. Separate Management accounts must be available for each client. VLAN 120 must be used for data traffic of Vendorlab, and VLAN 150 must be used for the datatraffic of Partnerlab. VLAN 160 must be used for the client-side traffic and must be shared between the partitions.Objective: Determine how to design Multi Tenant InfrastructureSource: CNS-420 Module 2Which set of commands meets this requirement?A. add vlan 160 sharing ENABLEDbind partition Vendorlab vlan 160bind partition Partnerlab vlan 160B. add vlan 160bind partition Vendorlab vlan 160set vlan 160 sharing ENABLEDbind partition Partnerlab vlan 160 Hosted VDIC. add vlan 160bind partition Vendorlab vlan 160set vlan 160 sharing ENABLEDbind partition Partnerlab vlan 160D. add vlan 160 sharing ENABLEDswitch partition Vendorlabbind partition Vendorlab vlan 160switch partition Partnerlabbind partition Partnerlab vlan 16019

Contributors & MarksPreparationExam OverviewAppendix: Practice [Sample Question 3]Scenario: A Citrix Architect has implemented two high availability pairs of Citrix 5500 MPX andMPX 11500 respectively with 12.0.53.13 nc version. The Citrix ADC devices are set up to handleCitrix ADC Gateway, Load Balancing, Application Firewall, and Content Switching. TheWorkspacelab infrastructure is set up to be monitored with Citrix Application DeliveryManagement version 12.0.53.13 nc by the Workspacelab administrators. The Workspacelabteam wants to implement one more pair of Citrix ADC MPX devices 7500 with version12.0.53.13 nc. The Citrix consulting team has assigned the task to implement these Citrix ADCdevices in the infrastructure and set them up to be monitored and managed by CitrixApplication Delivery Management.Sample Question 3 Cont.Correct Answer: AObjective: Determine how to use Citrix Application Delivery Managementfor Citrix ADC AutomationSource: CNS-420 Module 7The following are the requirements that were discussed during the project initiation call: Citrix Application Delivery Management should be configured to get the infrastructureinformation under sections such as HDX Insight, WEB Insight, and Security Insight. Configuration on the new MPX devices should be identical to that of MPX 11500 devices. Configuration changes after the deployment and initial setup should be optimized usingCitrix Application Delivery Management. Citrix Application Delivery Management should be utilized to configure templates that canbe utilized by Workspacelab team in future deployments. As per the requirement from Workspacelab team, Citrix Application Delivery Managementshould store the audited data for only 15 days.Which configuration setting should the consultant configure to ensure that the audited data isNOT stored for more than 15 days?A.B.C.D.System Prune settingsSyslog Prune settingsmps afdecoder logs to prune data after 15 daysmps analytics logs to prune data after 15 days20

Exam OverviewContributors & MarksAuthorPremkumar MekaraContributors &Contributors & MarksMarksPreparationSubject Matter ExpertsAbdullah AbdullahBrian TannousKawaljit SinghRick RoetenbergAman SharmaCarsten BrunsKyle DaviesRyan S KellerAndy GravettChristopher SchrameyerMatthias SchlimmSam JacobsAnton MayersDaniel MarshMehdi KawtarSamuel LegrandAnton van PeltEsther BarthelParveen KumarShruti DhamaleArnd KagelmacherJacob RutskiPaul GhattasVictor FuenmayorAlexander TateJesse WilsonRavindra G HunashimaradArnaud PainJohannes NorzRick Bloss21

Exam OverviewPreparationContributors &Contributors & MarksMarksNoticeMarksCitrix Systems, Inc. (Citrix) makes no representations or warranties with respectto the content or use of this publication. Citrix specifically disclaims anyexpressed or implied warranties, merchantability, or fitness for any particularpurpose. Citrix reserves the right to make any changes in specifications and otherinformation contained in this publication without prior notice and withoutobligation to notify any person or entity of such revisions or changes.The following marks are service marks, trademarks, or registered trademarks oftheir respective owners in the United States or other countries: Copyright 2019 Citrix Systems, Inc.All Rights Reserved. No part of this publication may be reproduced or transmittedin any form or by any means, electronic or mechanical, including photocopying,recording, or information storage and retrieval systems, for any purpose otherthan the purchaser’s personal use, without express written permission of:MarkOwnerCitrix , Citrix Citrix ADC Gateway , Citrix Receiver , CitrixProvisioning Services , XenDesktop , XenServer , StoreFront , CitrixADC , Citrix Studio , Citrix Director , Machine Creation Services Citrix Systems, Inc.Active Directory , Microsoft , SQL Server , Windows , WindowsServer , Windows Server 2016 , Windows 7 , Windows 10 ,Azure , Outlook , Microsoft App-V , Hyper-V , PowerPoint ,Office , Windows PowerShell Microsoft CorporationMac Apple, Inc.Citrix Systems, Inc.851 W. Cypress Creek RoadFt. Lauderdale, FL 33309http://www.citrix.com22

This exam preparation guide is designed to provide candidates with necessary information about the 1Y0-440 exam, including study resources and ways to interpret the exam objectives to better enable candidates to assess the types of questions that may be asked during the exam. Please be aware that the content of this guide in no way ensures a