nerdexam
Citrix

1Y0-341 · Question #37

Scenario: A Citrix Engineer has enabled the IP Reputation feature. The engineer wants to protect a critical web application from a distributed denial of service attack. Which advanced expression can…

The correct answer is B. CLIENT.IP.SRC.IPREP_THREAT_CATEGORY(BOTNETS). This expression checks if the source IP address of the client is categorized as a botnet, which is commonly associated with distributed denial of service (DDoS) attacks. By targeting botnet traffic, the engineer can help mitigate the impact of such attacks on the web application.

Rewrite and Responder

Question

Scenario: A Citrix Engineer has enabled the IP Reputation feature. The engineer wants to protect a critical web application from a distributed denial of service attack. Which advanced expression can the engineer write for a Responder policy?

Options

  • ACLIENT.IP.SRC.IPREP_THREAT_CATEGORY(SPAM_SOURCES)
  • BCLIENT.IP.SRC.IPREP_THREAT_CATEGORY(BOTNETS)
  • CCLIENT.IP.SRC.IPREP_THREAT_CATEGORY(WEB_ATTACKS)
  • DCLIENT.IP.SRC.IPREP_THREAT_CATEGORY(WINDOWS_EXPLOITS)

How the community answered

(50 responses)
  • A
    4% (2)
  • B
    78% (39)
  • C
    6% (3)
  • D
    12% (6)

Explanation

This expression checks if the source IP address of the client is categorized as a botnet, which is commonly associated with distributed denial of service (DDoS) attacks. By targeting botnet traffic, the engineer can help mitigate the impact of such attacks on the web application.

Topics

#IP Reputation#Responder policy#IPREP_THREAT_CATEGORY#DDoS protection

Community Discussion

No community discussion yet for this question.

Full 1Y0-341 Practice