nerdexam
Citrix

1Y0-231 · Question #104

Which two policy types must a Citrix Administrator apply to a Citrix Gateway virtual server so that access is limited to those who are members of the Active Directory domain and using corporate…

The correct answer is B. Preauthentication C. Session. Preauthentication (B) and Session (C) together enforce both requirements: Preauthentication policies run before login and can scan the endpoint for domain membership, certificates, or corporate software to verify the device is a company laptop. Session policies then govern the…

Citrix Gateway

Question

Which two policy types must a Citrix Administrator apply to a Citrix Gateway virtual server so that access is limited to those who are members of the Active Directory domain and using corporate laptops? (Choose two.)

Options

  • AAuthorization
  • BPreauthentication
  • CSession
  • DResponder
  • ETraffic

How the community answered

(26 responses)
  • A
    8% (2)
  • B
    73% (19)
  • D
    15% (4)
  • E
    4% (1)

Explanation

Preauthentication (B) and Session (C) together enforce both requirements: Preauthentication policies run before login and can scan the endpoint for domain membership, certificates, or corporate software to verify the device is a company laptop. Session policies then govern the authenticated session and can enforce AD-based authentication (via LDAP) to ensure only domain members gain access.

Why the distractors are wrong:

  • A (Authorization): Controls what resources an already-authenticated user can reach - it doesn't gate who can log in or which devices qualify.
  • D (Responder): Used to redirect, reset, or drop HTTP requests based on traffic conditions - not for endpoint compliance or identity authentication.
  • E (Traffic): Manages how traffic is handled (e.g., compression, SSL offloading) - unrelated to access control based on device type or directory membership.

Memory tip: Think of it as a two-checkpoint border crossing - Preauthentication is the customs agent checking your passport and luggage (the device) before you enter, while the Session policy is immigration verifying your visa (AD credentials) once you're at the desk. Both checkpoints must be passed.

Topics

#Preauthentication policies#Session policies#Active Directory authentication#Device compliance

Community Discussion

No community discussion yet for this question.

Full 1Y0-231 Practice