nerdexam
Citrix

1Y0-240 · Question #198

Scenario: A Citrix Administrator configured the "-denySSLReneg" Parameter using the below command on Citrix ADC to enhance security. set ssl parameter -denySSLReneg <option> Which two options can…

The correct answer is B. FRONTEND_CLIENT C. NONSECURE. https://support.citrix.com/article/CTX123680 set ssl parameter -denySSLReneg The parameterin the preceding command can take any one of the following values: Note: Default value is set to "ALL". NO: Full SSL renegotiation is allowed. FRONTEND_CLIENT: Deny secure and non-secure…

SSL Offloading

Question

Scenario: A Citrix Administrator configured the "-denySSLReneg" Parameter using the below command on Citrix ADC to enhance security. set ssl parameter -denySSLReneg <option> Which two options can the administrator use to complete the command? (Choose two.)

Options

  • AHIGHSECURE
  • BFRONTEND_CLIENT
  • CNONSECURE
  • DON
  • EALL

How the community answered

(37 responses)
  • A
    14% (5)
  • B
    78% (29)
  • D
    5% (2)
  • E
    3% (1)

Explanation

https://support.citrix.com/article/CTX123680 set ssl parameter -denySSLReneg The parameterin the preceding command can take any one of the following values: Note: Default value is set to "ALL". NO: Full SSL renegotiation is allowed. FRONTEND_CLIENT: Deny secure and non-secure SSL renegotiation initiated by the client. FRONTEND_CLIENTSERVER: Deny secure and non-secure SSL renegotiation initiated by the client and by the NetScaler appliance during policy-based clientAuth. ALL: Deny secure and non-secure SSL renegotiation for the preceding two cases and for server initiated renegotiation. NONSECURE: Deny non-secure SSL renegotiation to address the vulnerability described in RFC Note: The NONSECURE option is supported only on NetScaler software release 9.3.e, 10.x and

Topics

#SSL renegotiation#denySSLReneg#SSL hardening#security parameter

Community Discussion

No community discussion yet for this question.

Full 1Y0-240 Practice