1Y0-403 · Question #131
Scenario: A Citrix Architect is designing a new XenApp and XenDesktop Service environment. During discussions about the Access Layer design, the architect gathers the following requirements…
The correct answer is B. NetScaler Gateway on-premises with Workspace in Cloud. Explanation/Reference: I had enabled Multi-Factor or two factor authentication on premise using VPX. Can I enable this on cloud The VPX provided with XenApp and/or XenDesktop service must be used for HDX proxy only (based on connector or using Azure Active Directory…
Question
Scenario: A Citrix Architect is designing a new XenApp and XenDesktop Service environment. During discussions about the Access Layer design, the architect gathers the following requirements:
Minimize management overhead where possible. Multi-factor authentication should be used for all user access to the XenApp and XenDesktop environment. Users should receive different Citrix policy settings depending on whether their connection is external to the internal network. Which deployment option should the architect recommend for the design?
Options
- ANetScaler Gateway on-premises with StoreFront on-premises
- BNetScaler Gateway on-premises with Workspace in Cloud
- CNetScaler Gateway Service with Workspace in Cloud
- DNetScaler Gateway Service with StoreFront on-premises
How the community answered
(31 responses)- A3% (1)
- B71% (22)
- C16% (5)
- D10% (3)
Explanation
Explanation/Reference: I had enabled Multi-Factor or two factor authentication on premise using VPX. Can I enable this on cloud The VPX provided with XenApp and/or XenDesktop service must be used for HDX proxy only (based on connector or using Azure Active Directory. https://docs.citrix.com/en-us/citrix-gateway-service/faq.html Authentication, Authorization, and Accounting, more commonly known as AAA, is a feature of on-premises Citrix Gateway. The primary use case from the standpoint of user access to Citrix resources are advanced Windows authentication mechanisms, third-party identity providers (Google, Okta, and Ping), RADIUS MFA, conditional access policies, and many others. (Also remember that the exception is Azure Active Directory. For a long time now, you've been able to integrate it directly into Citrix Cloud without the on- premises Gateway, enabling some of these more advanced authentication scenarios.) The new Gateway IdP functionality is beneficial for helping enterprises migrate to Citrix Cloud. However, a hybrid infrastructure based on on-premises Gateway is necessary. Although Gateway IdP can be used with Workspace, this type of deployment still requires the management and maintenance of the on- premises Gateway device.
Topics
Community Discussion
No community discussion yet for this question.