
Citrix Certified Associate – App Delivery and Security (CCA-AppDS-Gateway)
The Citrix Certified Associate – App Delivery and Security (CCA-AppDS-Gateway) certification validates your ability to deploy and manage NetScaler Gateway in Citrix environments. It is designed for IT professionals who configure secure remote access, enforce authentication policies, and ensure reliable connectivity for Citrix workloads. Earning this credential demonstrates your readiness to support modern hybrid work environments with Citrix technologies.
553 practice questions · Updated 2026-07-30
CCA-APPDS-GATEWAY Curriculum
Every domain, objective, and concept the CCA-APPDS-GATEWAY exam measures.
- NetScaler networking model overview
- Configure IP addresses
- Configure VLANs
- Configure interfaces and channels
- Configure routing
- Configure access control lists (ACLs)
- Configure network address translation (NAT)
- Configure load balancing virtual servers
- Configure content switching virtual servers
- Configure SSL virtual servers
- Configure GSLB
- Configure high availability
- Configure monitoring and diagnostics
- IP address assignment
- Subnetting and CIDR
- Routing table management
- Static route configuration
- Default gateway configuration
- Route prioritization and metrics
- Troubleshooting IP connectivity
- Link aggregation concepts
- Link aggregation modes
- Configuring link aggregation
- Verifying link aggregation
- Troubleshooting link aggregation
- Understanding High Availability concepts
- Preparing for HA pair setup
- Creating a High Availability pair
- Configuring HA pair settings
- Managing HA pair synchronization
- Performing failover and failback
- Monitoring HA pair health
- Troubleshooting HA pair issues
- Failover mechanisms
- Synchronization of configuration
- Failover triggers and conditions
- Failover behavior and impact
- Manual failover initiation
- Monitoring and troubleshooting synchronization
- Identify load balancing service types
- Configure basic load balancing service
- Configure advanced service parameters
- Configure service groups
- Bind services to virtual servers
- Verify service configuration
- Load Balancing Methods Overview
- Least Connection Method
- Least Response Time Method
- Round Robin Method
- Weighted Round Robin Method
- Source IP Hash Method
- URL Hash Method
- Destination IP Hash Method
- Least Packets Method
- Least Bandwidth Method
- Custom Load Balancing Method
- Load Balancing Monitors Overview
- Built-in Monitors
- Custom Monitors
- Monitor Parameters
- Monitor Binding
- Monitor States and Thresholds
- Monitor Tuning
- SSL/TLS Handshake Overview
- Session Establishment Steps
- Session Resumption Mechanisms
- Role of the Gateway in SSL Sessions
- Cipher Suite Negotiation
- Key Exchange and Derivation
- Certificate Validation
- Session State Management
- Certificate lifecycle management
- Certificate formats and encoding
- Certificate installation on Citrix ADC
- Certificate binding to vServers
- Certificate renewal and replacement
- Certificate revocation and validation
- Certificate backup and restore
- Troubleshooting certificate issues
- SSL Offload Overview
- SSL Offload Configuration
- SSL Certificates
- SSL Protocols and Ciphers
- SSL Offload Monitoring
- NetScaler Gateway Overview
- NetScaler Gateway Deployment Modes
- NetScaler Gateway Architecture Components
- NetScaler Gateway Integration with Citrix Products
- NetScaler Gateway Authentication and Authorization
- NetScaler Gateway Access Policies
- NetScaler Gateway High Availability and Load Balancing
- NetScaler Gateway Security Features
- NetScaler Gateway User Experience
- Authentication methods
- Authentication policies
- Authentication virtual servers
- Authentication profiles
- LDAP configuration
- RADIUS configuration
- SAML configuration
- Multi-factor authentication
- User and group mapping
- Session policies
- Authentication flow
- Troubleshooting authentication
- Authentication Methods
- Authorization Policies
- Auditing and Logging
- Session policy fundamentals
- Policy creation and configuration
- Policy binding and priority
- Session policy actions
- Session policy expressions
- Session policy testing and troubleshooting
- Client connection types
- Connection establishment process
- Connection policies
- Session management
- Troubleshooting client connections
- RDP proxy overview
- RDP proxy configuration
- RDP proxy authentication
- RDP proxy policies
- RDP proxy session management
- RDP proxy security
- Access NetScaler logs
- Interpret log formats
- Correlate logs with events
- Use log filters and search
- Analyze common error patterns
- Leverage log levels
- nstrace overview
- starting and stopping captures
- filtering by IP addresses
- filtering by ports and protocols
- filtering by connection or session
- using advanced filter expressions
- interpreting trace output
- exporting and saving traces
- NetScaler Gateway Integration Overview
- Authentication and Single Sign-On
- StoreFront Integration
- Load Balancing and High Availability
- SSL and Certificates
- Access Policies and Security
- Troubleshooting and Monitoring
- StoreFront integration overview
- StoreFront server configuration
- NetScaler Gateway session policies
- NetScaler Gateway virtual server configuration
- StoreFront authentication service configuration
- Beacon and callback configuration
- Load balancing and high availability
- Troubleshooting integration issues
- AppExpert Overview
- AppExpert Policies
- AppExpert Expressions
- AppExpert Actions
- AppExpert Patterns and Patternsets
- AppExpert Rate Control
- AppExpert HTTP Callouts
- AppExpert Integration with Rewrite and Responder
- Rewrite vs Responder Overview
- Rewrite Actions
- Rewrite Policies
- Responder Actions
- Responder Policies
- Policy Binding and Priority
- Expression Syntax
- Testing and Troubleshooting
- Content Switching Overview
- Content Switching Policies
- Content Switching Virtual Servers
- Binding Policies to Virtual Servers
- Content Switching Actions
- Policy Expression Syntax
- Default and Fallback Policies
- Content Switching with SSL
- Troubleshooting Content Switching
- Advanced load balancing methods overview
- Least connection method
- Least response time method
- Least bandwidth method
- Least packets method
- Custom load balancing method
- Hash-based load balancing methods
- Token-based load balancing method
- Configuring advanced load balancing methods
- Monitoring and troubleshooting load balancing
Percentages reflect share of the current practice bank, not official exam weightings — no structured per-skill weight is published for CCA-APPDS-GATEWAY, so none is invented.