Which statement reflects the correct ACL approach to limit access to a vServer for a fixed TTL?

Prepare for the Citrix 1Y0-241 and 1Y0-240 Exam. Use flashcards and multiple choice questions to enhance your understanding and success. Discover tips and strategies for acing your certification.

Multiple Choice

Which statement reflects the correct ACL approach to limit access to a vServer for a fixed TTL?

Explanation:
The idea being tested is using a time-bound access control rule to temporarily block a vServer. In Citrix ADC, you can attach a deny rule that has a TTL, so the block lasts only for the specified duration and then automatically expires. Only NS ACLs support TTL for their rules, whereas simple ACLs do not offer TTL functionality. Therefore, to enforce a fixed-duration limit on access, you create a deny rule on an NS ACL and set the TTL to the desired duration in milliseconds. A TTL of 600000 milliseconds equals 10 minutes, which is why the best choice uses a deny rule on NS ACL with TTL 600000. Using a TTL value like 600 would either be unsupported or interpreted incorrectly due to the unit, making it unsuitable.

The idea being tested is using a time-bound access control rule to temporarily block a vServer. In Citrix ADC, you can attach a deny rule that has a TTL, so the block lasts only for the specified duration and then automatically expires. Only NS ACLs support TTL for their rules, whereas simple ACLs do not offer TTL functionality. Therefore, to enforce a fixed-duration limit on access, you create a deny rule on an NS ACL and set the TTL to the desired duration in milliseconds. A TTL of 600000 milliseconds equals 10 minutes, which is why the best choice uses a deny rule on NS ACL with TTL 600000. Using a TTL value like 600 would either be unsupported or interpreted incorrectly due to the unit, making it unsuitable.

Subscribe

Get the latest from Examzify

You can unsubscribe at any time. Read our privacy policy