1Y0-204 Security Practice Question
Exhibit
Set-BrokerSite -TrustRequestsSentToTheXmlServicePort $True
Refer to the exhibit. An administrator runs the provided command on a Delivery Controller. What is the security implication of this setting?
⚠ Common exam trap
Candidates often focus purely on the functional convenience of simplified connectivity, completely overlooking the security risks introduced by bypassing explicit XML authentication checks.
Answer choices
Why each option matters
Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.
Correct answer & explanation
✓
The Delivery Controller will trust XML requests from StoreFront servers without requiring additional authentication.
This command allows the XML service to trust requests without explicit authentication checks from the StoreFront server. While it simplifies connectivity between StoreFront and the Delivery Controller, it reduces the security posture by potentially allowing unauthorized requests to reach the site. It is critical to ensure that communication between these components is isolated in a secure network segment to prevent internal attackers from spoofing requests to the XML service.
Answer analysis
Option-by-option breakdown
For each option: why learners choose it and why it is or isn't the right answer here.
- ✗
The XML service will reject all connections from non-trusted IP addresses.
Why it's wrong here
This command actually does the opposite by instructing the XML service to trust requests from StoreFront without requiring the traditional, more rigorous authentication handshake. It effectively bypasses the requirement for the StoreFront server to provide valid credentials to the XML service for every user enumeration request.
- ✓
The Delivery Controller will trust XML requests from StoreFront servers without requiring additional authentication.
Why this is correct
When this parameter is set to true, the Delivery Controller accepts enumeration and launch requests from StoreFront without requiring the StoreFront server to authenticate itself for every transaction. This is a convenience feature that assumes the network between the Controller and StoreFront is fully secured.
- ✗
The connection between the client and the XML service is now automatically encrypted using TLS.
Why it's wrong here
This PowerShell cmdlet only modifies the trust relationship between the StoreFront server and the Delivery Controller. It has no effect on the encryption protocols used for the transmission of data. Encryption must be enabled separately by configuring TLS certificates and settings on the XML service port.
- ✗
The XML service port will now only accept traffic over HTTPS.
Why it's wrong here
Trust settings are independent of the transport protocol. Enabling this trust setting does not automatically force the communication over HTTPS or disable the standard HTTP listener. You must configure the IIS site bindings and the XML service to exclusively listen on the secure HTTPS port.
About these practice questions
Courseiva writes every 1Y0-204 question from scratch — 216 in total, each with an explanation and a wrong-answer breakdown. None are copied from real exams or dumps. Learn why practice questions differ from exam dumps →
JA
Written and reviewed by Johnson Ajibi, MSc IT Security
Senior Network & Security Engineer · founder of Courseiva
Last reviewed September 2026 · checked against the official Citrix exam blueprint
This 1Y0-204 practice question is part of Courseiva's free Citrix certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the 1Y0-204 exam.