Scenario: A Citrix Administrator configured the commands below using the Command-Line Interface (CLI).
> add responder action redirect_to_https_action redirect '"https://" +
HTTP.REQ.HOSTNAME.HTTP_URL_SAFE' -bypassSafetyCheck YES add responder policy redirect_to_https_pol
> "CLIENT.IP.SRC.IN_SUBNET(10.140.4.0/23).NOT
CLIENT.IP.SRC.IN_SUBNET(10.140.24.0/23).NOT
CLIENT.IP.SRC.IN_SUBNET(10.140.5.0/23).NOT" redirect_to_https_action
What is the result of the executed commands?
Correct Answer: B
The policy expression negates each subnet check, so it only fires for clients not in any of the three subnets. Therefore, any client whose IP falls within 10.140.4.0/23, 10.140.24.0/23, or
10.140.5.0/23 will not match the rule and will not be redirected to HTTPS.