<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	xmlns:georss="http://www.georss.org/georss" xmlns:geo="http://www.w3.org/2003/01/geo/wgs84_pos#" xmlns:media="http://search.yahoo.com/mrss/"
	>

<channel>
	<title>Jarian Gibson &#187; Access Gateway Enterprise</title>
	<atom:link href="http://jariangibson.com/category/access-gateway-enterprise/feed/" rel="self" type="application/rss+xml" />
	<link>http://jariangibson.com</link>
	<description>Application, Desktop, and Server Virtualization</description>
	<lastBuildDate>Sat, 19 May 2012 17:20:22 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.com/</generator>
<cloud domain='jariangibson.com' port='80' path='/?rsscloud=notify' registerProcedure='' protocol='http-post' />
<image>
		<url>http://s2.wp.com/i/buttonw-com.png</url>
		<title>Jarian Gibson &#187; Access Gateway Enterprise</title>
		<link>http://jariangibson.com</link>
	</image>
	<atom:link rel="search" type="application/opensearchdescription+xml" href="http://jariangibson.com/osd.xml" title="Jarian Gibson" />
	<atom:link rel='hub' href='http://jariangibson.com/?pushpress=hub'/>
		<item>
		<title>Access Gateway Enterprise with AAA Groups and the Citrix Receiver</title>
		<link>http://jariangibson.com/2010/12/20/access-gateway-enterprise-with-aaa-groups-and-the-citrix-receiver/</link>
		<comments>http://jariangibson.com/2010/12/20/access-gateway-enterprise-with-aaa-groups-and-the-citrix-receiver/#comments</comments>
		<pubDate>Tue, 21 Dec 2010 03:21:15 +0000</pubDate>
		<dc:creator>Jarian Gibson</dc:creator>
				<category><![CDATA[Access Gateway]]></category>
		<category><![CDATA[Access Gateway Enterprise]]></category>
		<category><![CDATA[Citrix Receiver]]></category>

		<guid isPermaLink="false">http://jariangibson.com/?p=1028</guid>
		<description><![CDATA[I recently enabled VPN in Access Gateway Enterprise for another way to get into my corporate environment since myself and a handful of engineers support the environment.  We already had the Citrix Receiver setup and working through Access Gateway.  Once I began testing my access (before rolling out to others) after enabling VPN by testing the &#8230; <span class="more-link"><a href="http://jariangibson.com/2010/12/20/access-gateway-enterprise-with-aaa-groups-and-the-citrix-receiver/">Continue reading &#187;</a></span><img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=jariangibson.com&#038;blog=9096580&#038;post=1028&#038;subd=jariangibson&#038;ref=&#038;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>I recently enabled VPN in Access Gateway Enterprise for another way to get into my corporate environment since myself and a handful of engineers support the environment.  We already had the Citrix Receiver setup and working through Access Gateway.  Once I began testing my access (before rolling out to others) after enabling VPN by testing the different methods of access, I started getting errors and wasn&#8217;t able to logon using the Citrix Receiver.  In this blog post I am going to go over Access Gateway Enterprise with AAA Groups and the Citrix Receiver.</p>
<p><span id="more-1028"></span>In Access Gateway I have two session policies bound to the Access Gateway Virtual Server.  One session policy is for the Citrix Receiver and the other session policy is for Web Interface ICA/HDX access only.   No issues with connecting to the environment using the Citrix Receiver or Web Interface ICA/HDX access only.  I recently enabled the option to use VPN or Web Interface ICA/HDX access with Client Choices by using AAA Groups with a session policy in Access Gateway for testing.  VPN and Web Interface ICA/HDX access worked fine but I could not logon using the Citrix Receiver.  I tested the Citrix Receiver from the iPad and Android mobile devices.  See the screenshots below for the different errors on each device.</p>
<p><a href="http://jariangibson.files.wordpress.com/2010/12/ipad_error.jpg"><img class="alignnone size-medium wp-image-1037" title="iPad_Error" src="http://jariangibson.files.wordpress.com/2010/12/ipad_error.jpg?w=300&h=179" alt="" width="300" height="179" /></a></p>
<p>Citrix Receiver error on the iPad.</p>
<p><a href="http://jariangibson.files.wordpress.com/2010/12/android_error.jpg"><img class="alignnone size-medium wp-image-1038" title="Android_Error" src="http://jariangibson.files.wordpress.com/2010/12/android_error.jpg?w=200&h=300" alt="" width="200" height="300" /></a></p>
<p>Citrix Receiver error on Android.</p>
<p>After reviewing my configuration, a session policy conflict was found between the Citrix Receiver session policy bound to the Access Gateway Virtual Server and a session policy bound to an AAA Group.  The session policies both had the same priority of 0.  See the screenshots below for the Access Gateway Virtual Server and AAA Group session policies configurations.</p>
<p><a href="http://jariangibson.files.wordpress.com/2010/12/vritual-server.png"><img class="alignnone size-medium wp-image-1043" title="Virtual Server" src="http://jariangibson.files.wordpress.com/2010/12/vritual-server.png?w=300&h=243" alt="" width="300" height="243" /></a></p>
<p>Access Gateway Virtual Server session policies.</p>
<p><a href="http://jariangibson.files.wordpress.com/2010/12/aaa-group.png"><img class="alignnone size-medium wp-image-1044" title="AAA Group" src="http://jariangibson.files.wordpress.com/2010/12/aaa-group.png?w=300&h=191" alt="" width="300" height="191" /></a></p>
<p>Access Gateway AAA Group session policy.</p>
<p>After some configuration changes and testing, there are two ways to fix the issue.  One option is to make the AAA Group session policy a lower priority by giving it a higher priority number than the Access Gateway Virtual Server Citrix Receiver session policy.  The other option is to configure the AAA Group session policy with a policy expression of REQ.HTTP.HEADER User-Agent NOTCONTAINS CitrixReceiver.  See the screenshots below for the AAA Group session policies configuration options.</p>
<p><a href="http://jariangibson.files.wordpress.com/2010/12/aaa-group-priority.png"><img class="alignnone size-medium wp-image-1047" title="AAA Group Priority" src="http://jariangibson.files.wordpress.com/2010/12/aaa-group-priority.png?w=300&h=189" alt="" width="300" height="189" /></a></p>
<p>AAA Group lower priority session policy</p>
<p><a href="http://jariangibson.files.wordpress.com/2010/12/aaa-group-expression.png"><img class="alignnone size-medium wp-image-1048" title="AAA Group Expression" src="http://jariangibson.files.wordpress.com/2010/12/aaa-group-expression.png?w=300&h=189" alt="" width="300" height="189" /></a></p>
<p>AAA Group policy expression session policy</p>
<p>By using either of the options above for the AAA Group session policy, you should now be able to connect using the Citrix Receiver without any errors.  I wish Access Gateway had a resultant set of policy tool like XenApp and XenDesktop has.</p>
<div>If you have found this article interesting or if you have any other insights, please feel free to leave comments on this article.</div>
<br />Filed under: <a href='http://jariangibson.com/category/citrix/access-gateway/'>Access Gateway</a>, <a href='http://jariangibson.com/category/citrix/access-gateway-enterprise/'>Access Gateway Enterprise</a>, <a href='http://jariangibson.com/category/citrix/citrix-receiver/'>Citrix Receiver</a> Tagged: <a href='http://jariangibson.com/tag/access-gateway/'>Access Gateway</a>, <a href='http://jariangibson.com/tag/access-gateway-enterprise/'>Access Gateway Enterprise</a>, <a href='http://jariangibson.com/tag/citrix-receiver/'>Citrix Receiver</a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/jariangibson.wordpress.com/1028/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/jariangibson.wordpress.com/1028/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/jariangibson.wordpress.com/1028/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/jariangibson.wordpress.com/1028/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/jariangibson.wordpress.com/1028/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/jariangibson.wordpress.com/1028/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/jariangibson.wordpress.com/1028/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/jariangibson.wordpress.com/1028/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/jariangibson.wordpress.com/1028/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/jariangibson.wordpress.com/1028/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/jariangibson.wordpress.com/1028/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/jariangibson.wordpress.com/1028/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/jariangibson.wordpress.com/1028/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/jariangibson.wordpress.com/1028/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=jariangibson.com&#038;blog=9096580&#038;post=1028&#038;subd=jariangibson&#038;ref=&#038;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://jariangibson.com/2010/12/20/access-gateway-enterprise-with-aaa-groups-and-the-citrix-receiver/feed/</wfw:commentRss>
		<slash:comments>10</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/1271a4fe440ce7926a792b3fb3ba4bfe?s=96&#38;d=http%3A%2F%2F1.gravatar.com%2Favatar%2Fad516503a11cd5ca435acc9bb6523536%3Fs%3D96&#38;r=G" medium="image">
			<media:title type="html">JarianGibson</media:title>
		</media:content>

		<media:content url="http://jariangibson.files.wordpress.com/2010/12/ipad_error.jpg?w=300" medium="image">
			<media:title type="html">iPad_Error</media:title>
		</media:content>

		<media:content url="http://jariangibson.files.wordpress.com/2010/12/android_error.jpg?w=200" medium="image">
			<media:title type="html">Android_Error</media:title>
		</media:content>

		<media:content url="http://jariangibson.files.wordpress.com/2010/12/vritual-server.png?w=300" medium="image">
			<media:title type="html">Virtual Server</media:title>
		</media:content>

		<media:content url="http://jariangibson.files.wordpress.com/2010/12/aaa-group.png?w=300" medium="image">
			<media:title type="html">AAA Group</media:title>
		</media:content>

		<media:content url="http://jariangibson.files.wordpress.com/2010/12/aaa-group-priority.png?w=300" medium="image">
			<media:title type="html">AAA Group Priority</media:title>
		</media:content>

		<media:content url="http://jariangibson.files.wordpress.com/2010/12/aaa-group-expression.png?w=300" medium="image">
			<media:title type="html">AAA Group Expression</media:title>
		</media:content>
	</item>
		<item>
		<title>Citrix Products 2010: A Wish List (continued) +1</title>
		<link>http://jariangibson.com/2009/11/12/citrix-products-2010-a-wish-list-continued-1/</link>
		<comments>http://jariangibson.com/2009/11/12/citrix-products-2010-a-wish-list-continued-1/#comments</comments>
		<pubDate>Fri, 13 Nov 2009 01:57:09 +0000</pubDate>
		<dc:creator>Jarian Gibson</dc:creator>
				<category><![CDATA[Access Gateway Enterprise]]></category>
		<category><![CDATA[Citrix Receiver]]></category>
		<category><![CDATA[Merchandising Server]]></category>
		<category><![CDATA[Provisioning Services]]></category>
		<category><![CDATA[XenApp]]></category>
		<category><![CDATA[XenDesktop]]></category>
		<category><![CDATA[XenServer]]></category>
		<category><![CDATA[Application Streaming]]></category>
		<category><![CDATA[NetScaler]]></category>
		<category><![CDATA[NetScaler VPX]]></category>
		<category><![CDATA[Power and Capacity Management]]></category>
		<category><![CDATA[Provisioning Server]]></category>
		<category><![CDATA[VM Hosted Apps]]></category>

		<guid isPermaLink="false">http://jariangibson.com/?p=440</guid>
		<description><![CDATA[This week Helge Klein started a Citrix products 2010 wish list.  Tim Arenz expanded on Helge&#8217;s wish list on his blog earlier today.  I want to expand on both Helge&#8217;s and Tim&#8217;s additions with my own wishes as well.  I&#8217;m sure they both don&#8217;t mind since Tim encourages other bloggers to continue adding to this &#8230; <span class="more-link"><a href="http://jariangibson.com/2009/11/12/citrix-products-2010-a-wish-list-continued-1/">Continue reading &#187;</a></span><img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=jariangibson.com&#038;blog=9096580&#038;post=440&#038;subd=jariangibson&#038;ref=&#038;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>This week Helge Klein started a <a href="http://blogs.sepago.de/helge/2009/11/11/citrix-products-2010-a-wish-list/comment-page-1/#comment-9041">Citrix products 2010 wish list</a>.  <a href="http://www.timarenz.de/citrix-products-2010-a-wish-list-continued">Tim Arenz</a> expanded on Helge&#8217;s wish list on his blog earlier today.  I want to expand on both Helge&#8217;s and Tim&#8217;s additions with my own wishes as well.  I&#8217;m sure they both don&#8217;t mind since Tim encourages other bloggers to continue adding to this list.  Like Tim, I encourage other bloggers to keep this wish list going.  Helge&#8217;s are in black and Tim&#8217;s are in red.  So here on are my additions in orange.<br />
<span id="more-440"></span></p>
<p><strong>XenApp</strong></p>
<ul>
<li>A version of XenApp that runs on Windows Server 2008 R2</li>
<li>One console only, at least for XenApp</li>
<li>PowerShell SDK for managing XenApp</li>
<li>Realtime audio/video so that, for example, Microsoft Office Communication Server can be used well</li>
<li>Migration tool that exports an old farm’s settings and imports them after optional transformation into a new far</li>
<li><span style="color:#ff0000;">Consistent feature set among the XenApp versions (2003 / 2008 / 2008 R2) </span>
<ul>
<li><span style="color:#ff0000;">Special folder redirection, power management, HDX Flash, etc</span></li>
</ul>
</li>
<li><span style="color:#ff9900;">A revamped Installation Manager on Windows 2008</span></li>
<li><span style="color:#ff9900;">Report Center in Access Management Console/Delivery Services Console that links to EdgeSight/pull reports from XenApp management console</span></li>
<li><span style="color:#ff9900;">XenApp Setup Wizard similar to XenDesktop Setup Wizard</span></li>
<li><span style="color:#ff9900;">Integration with hypervisors similar to XenDesktop power on, power off, reboot, etc</span></li>
<li><span style="color:#ff9900;">Folder inheritance of published applications in a folder- add a new server to a folder in the console and have applications automatically published on that server that are published to other servers in that folder</span></li>
<li><span style="color:#ff9900;">Content redirection/file type association between seamless hosted and seamless streamed applications </span></li>
</ul>
<p><strong>Support for XenApp in SCCM (Microsoft System Center Configuration Manager)</strong></p>
<ul>
<li>XenApp collections</li>
<li>Add application hosting information to SCCM package</li>
<li>Autonomic server load management to allow SCCM software distribution</li>
</ul>
<p><strong>VM Hosted Apps</strong></p>
<ul>
<li>Session sharing (multiple applications per session/VM)</li>
<li>Real application publishin</li>
<li><span style="color:#ff0000;">Integration in XenApp management console</span></li>
</ul>
<p><strong>XenClient</strong></p>
<ul>
<li>Release a first version, if only for enterprise volume laptops initially</li>
<li>Make it run on any system that supports VT-D and TXT (trusted execution technology)</li>
<li>Provide a private image mode: copy a VM to a client initially and then sync back differentially by creating snapshots that are stored on a server. A user would “own” a VM in this scenario and could store data and install applications in it, but updates/application installs could not be easily centrally managed.</li>
<li>Provide a shared image mode: copy a VM to a client initially that is reset to its original state when powering off. Provide a second disk (VHD file) for persistent user data. In this scenario, users could not install applications, since the OS VHD gets reset constantly, but administrators could manage updates to the OS VHD centrally by distributing snapshots containing new applications or patches to the clients. All user data would have to be stored on a second partition.</li>
<li>Optionally encrypt VHD files on the client (we are talking about laptops)</li>
<li>Map the GPU to any VM. That way we could use a private VM (with GPU, for games, etc.) and a more secure business VM.</li>
<li>Run applications from one VM seamlessly in the other VM (over ICA)</li>
</ul>
<p><strong>XenDesktop</strong></p>
<ul>
<li>Make HDX media stream for Flash optionally work in such a way that we do not need internet access in the client’s site. Stream Flash through ICA from the server to the client and only render it on the client.</li>
<li>PowerShell SDK for managing all aspects for XenDesktop</li>
<li><span style="color:#ff0000;">Merge the XenDesktop Setup Wizard into the “Create Desktop Group” Wizard</span></li>
<li><span style="color:#ff9900;">Windows Server 2008 support</span></li>
</ul>
<p><strong>Provisioning Server</strong></p>
<ul>
<li>Give us a tool for automating the management/patching of PVS images</li>
<li>Make it run in one of three modes:
<ul>
<li>Monitoring: Monitor external ESD server to determine if updates have been assigned to a machine</li>
<li>Scheduled: Periodically start the VM and allow the machine to update itself</li>
<li>Manual: Admin initiates VM start/stop for manually updating</li>
</ul>
</li>
<li>Give the tool a PowerShell SDK so we can program it</li>
<li><span style="color:#ff0000;">Easy way to upgrade virtualization tools (VMware Tools, XenTools, etc) and Provisioning Server Target Device of a vDisk</span></li>
<li><span style="color:#ff9900;">Provisioning Services Database Replication and or Mirroring</span></li>
</ul>
<p><strong>XenServer</strong></p>
<ul>
<li><span style="color:#ff0000;">VM-based snapshot and not disk-based snapshot</span></li>
<li><span style="color:#ff0000;">Easy way to revert to taken snapshots</span></li>
<li><span style="color:#ff0000;">Memory sharing / ballooning / over commitment (for VDI)</span></li>
<li><span style="color:#ff0000;">Thin provisioning for block-based storage repositories</span></li>
<li><span style="color:#ff0000;">Possibility to separate management and XenMotion network interface</span></li>
<li><span style="color:#ff0000;">Advanced template management </span>
<ul>
<li><span style="color:#ff0000;">Integration of Sysprep, possibility to change hostname, ip, etc</span></li>
</ul>
</li>
<li><span style="color:#ff9900;">Administrative Delegation</span></li>
<li><span style="color:#ff9900;">Wake On LAN of XenServer VMs</span></li>
<li><span style="color:#ff9900;">Move VMs/VDIs to storage repository without having to turn off VM and copy &#8211; Storage XenMotion</span></li>
</ul>
<p><strong>Workflow Studio</strong></p>
<ul>
<li><span style="color:#ff9900;">More development/example workflows</span></li>
<li><span style="color:#ff9900;">More integration with Citrix products &#8211; XenDesktop, etc</span></li>
</ul>
<p><strong>Various</strong></p>
<ul>
<li>Release Branch Repeater as a virtual appliance. Better make it available for all three important hypervisors.</li>
<li>Release a virtual appliance version of Access Gateway that can serve as a true replacement for CSG (Secure Gateway). For that, it needs to be free or very cheap at least. And better make it available for all three important hypervisors.</li>
<li><span style="color:#ff0000;">Consistent management console for all versions of Access Gateway</span></li>
<li><span style="color:#ff0000;">Citrix Receiver framework for the Mac and Linux platform</span></li>
<li><span style="color:#ff0000;">Integration of all Citrix agents/clients/plug-ins into Merchandising Server</span></li>
<li><span style="color:#ff9900;">NetScaler VPX virtual appliance for Hyper-V</span></li>
<li><span style="color:#ff9900;">Merchandising Server virtual appliance for ESX</span></li>
</ul>
<p><span style="color:#000000;">Please keep this wish list going.</span></p>
<p><span style="color:#000000;">If you have found this article interesting or if you have any other insights, please feel free to leave comments on this article.</span></p>
<br />Posted in Access Gateway Enterprise, Citrix Receiver, Merchandising Server, Provisioning Services, XenApp, XenDesktop, XenServer Tagged: Application Streaming, Citrix Receiver, Merchandising Server, NetScaler, NetScaler VPX, Power and Capacity Management, Provisioning Server, Provisioning Services, VM Hosted Apps, XenApp, XenDesktop, XenServer <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/jariangibson.wordpress.com/440/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/jariangibson.wordpress.com/440/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/jariangibson.wordpress.com/440/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/jariangibson.wordpress.com/440/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/jariangibson.wordpress.com/440/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/jariangibson.wordpress.com/440/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/jariangibson.wordpress.com/440/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/jariangibson.wordpress.com/440/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/jariangibson.wordpress.com/440/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/jariangibson.wordpress.com/440/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/jariangibson.wordpress.com/440/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/jariangibson.wordpress.com/440/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/jariangibson.wordpress.com/440/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/jariangibson.wordpress.com/440/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=jariangibson.com&#038;blog=9096580&#038;post=440&#038;subd=jariangibson&#038;ref=&#038;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://jariangibson.com/2009/11/12/citrix-products-2010-a-wish-list-continued-1/feed/</wfw:commentRss>
		<slash:comments>10</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/1271a4fe440ce7926a792b3fb3ba4bfe?s=96&#38;d=http%3A%2F%2F1.gravatar.com%2Favatar%2Fad516503a11cd5ca435acc9bb6523536%3Fs%3D96&#38;r=G" medium="image">
			<media:title type="html">JarianGibson</media:title>
		</media:content>
	</item>
	</channel>
</rss>
