1Y0-231 · Question #131
A Citrix Administrator needs to provide two-factor authentication in a Citrix Virtual Apps and Desktops with Citrix Gateway environment by ___________ and binding it to the existing virtual server…
The correct answer is C. configuring a RADIUS authentication policy. Configuring a RADIUS authentication policy (C) is the correct answer because RADIUS is the standard protocol used to integrate two-factor authentication solutions (such as RSA SecurID or Duo Security) with Citrix Gateway. The RADIUS policy is then bound directly to the existing…
Question
A Citrix Administrator needs to provide two-factor authentication in a Citrix Virtual Apps and Desktops with Citrix Gateway environment by ___________ and binding it to the existing virtual server. (Choose the correct option to complete the sentence.)
Options
- Aconfiguring an nFactor authentication policy
- Bcreating a SAML IDP policy
- Cconfiguring a RADIUS authentication policy
- Dadding an authentication profile
How the community answered
(33 responses)- A9% (3)
- B15% (5)
- C73% (24)
- D3% (1)
Explanation
Configuring a RADIUS authentication policy (C) is the correct answer because RADIUS is the standard protocol used to integrate two-factor authentication solutions (such as RSA SecurID or Duo Security) with Citrix Gateway. The RADIUS policy is then bound directly to the existing gateway virtual server as a secondary authentication method alongside primary LDAP/AD authentication - this is the classic, exam-expected 2FA pattern.
Why the distractors are wrong:
- A (nFactor) is a more advanced multi-factor framework that requires its own dedicated authentication virtual server and binds through an authentication profile - it does not bind policies directly to an existing virtual server in the traditional way.
- B (SAML IDP policy) configures Citrix Gateway to act as a SAML Identity Provider for federated SSO, which is unrelated to adding a second authentication factor.
- D (authentication profile) is a component of the nFactor architecture, not a standalone solution - it links an nFactor policy set to a virtual server but cannot itself provide 2FA.
Memory tip: Associate RADIUS = Two-Factor directly. Remember the phrase "RADIUS Rings the vServer" - RADIUS policies bind directly (ring) to the existing virtual server (vServer), which is exactly what the question describes.
Topics
Community Discussion
No community discussion yet for this question.