Welcome to ExamTopics
ExamTopics Logo
- Expert Verified, Online, Free.
exam questions

Exam 1Y0-403 All Questions

View all questions & answers for the 1Y0-403 exam

Exam 1Y0-403 topic 1 question 71 discussion

Actual exam question from Citrix's 1Y0-403
Question #: 71
Topic #: 1
[All 1Y0-403 Questions]

Scenario: A Citrix Architect is designing a new Citrix Virtual Apps and Desktops environment. Two Control Layer security requirements have been identified:
✑ For security reasons, it is unacceptable to use default ports for FlexCast Management Architecture (FMA) services.
✑ Management access to PowerShell and Citrix Studio should be restricted to management workstations by granular firewall rules.
Which combination of ports can the architect assign to the listed Citrix services to meet the Control Layer security requirements?

  • A. VDA Registration Port: 80 XML SSL Port: 80 SDK Port: 8083
  • B. VDA Registration Port: 8081 XML SSL Port: 443 SDK Port: 80
  • C. VDA Registration Port: 8081 XML SSL Port: 8082 SDK Port: 8083
  • D. VDA Registration Port: 8081 XML SSL Port: 8083 SDK Port: 8083
Show Suggested Answer Hide Answer
Suggested Answer: C 🗳️

Comments

Chosen Answer:
This is a voting comment (?) , you can switch to a simple comment.
Switch to a voting comment New
citrixmuc
1 year, 10 months ago
Selected Answer: C
requirement: use no default port and use three different ports for granular firewall rules => only C is a valid answer
upvoted 1 times
...
flo_pra
2 years, 4 months ago
Selected Answer: C
ctxvad is correct, it's the textual example for the course book.
upvoted 2 times
...
ctxvad
2 years, 8 months ago
I would say answer C. BrokerService.exe –VdaPort 8081 –WiSSLPort 8082 –SDKPort 8083 –ConfigureFirewall • In this example, instead of simply changing the port for all services, we are splitting the port (instead of using single port, we will use different ports for different services). After doing this, we can configure the firewalls to block access to specific ports – so for example port 8083 (SDK, required by PowerShell\Citrix Studio for management) is not available for virtual desktops, but only from management workstations. Page 528 of the 415-course book.
upvoted 4 times
...
rete1234
2 years, 10 months ago
Though all those question are wrong ;-) this is one of the few which has a right answer. See this: https://support.citrix.com/article/CTX232520 "4. Make sure port 80 is still allowed or added to firewall exceptions between all the delivery controllers for inter service communication and PVS servers. For example, Host service uses SDK port 80 to call HCL(Hypervisor Connection Library) to establish successful communication between PVS servers -> Delivery Controllers and hypervisor. This is required to create new hosting connection and to retain power state of virtual machines." You can't change SDK Port, therefore it's B.
upvoted 3 times
...
dan1111
2 years, 11 months ago
I think C is correct. It´s not a problem, using 8082 and 8083 on citrix controller, if you do not install licensing server on it.
upvoted 1 times
...
Benk118
3 years, 2 months ago
B is correct Not A = Default Port for VDA Register is Port 80 (however it is supposed to be changed) Not C and D 8082 and 8083 is for Lic Server - is not good B = Change VDA to 8081 and Firewall rule for 80,443 Default Port for Citrix Studio console or the SDK to directly access Delivery Controller https://docs.citrix.com/en-us/tech-zone/build/tech-papers/citrix-communication-ports.html
upvoted 4 times
neogeo_604er
2 years, 2 months ago
"✑ For security reasons, it is unacceptable to use default ports for FlexCast Management Architecture (FMA) services." thus not B
upvoted 1 times
...
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...