Objective
This article contains information to configure a Virtual Private Network (VPN) setup on a NetScaler Gateway appliance.
Requirements
-
SSL certificate: This should be installed and bound to the VPN Virtual Server (VServer).
- CTX109260 -??How to Generate and Install a Public SSL Certificate on a NetScaler Appliance
- CTX122521 -??How to Replace the Default Certificate of a NetScaler Appliance with a Trusted CA Certificate that Matches the Hostname of the Appliance
- Citrix Documentation - Binding the Certificate-Key Pair to the SSL-Based Virtual Server
- Authentication profile: This should be created and functional on NetScaler Gateway.
- For additional information,??refer to??Citrix Documentation - Configuring External User Authentication
- For additional information, refer to??Checklist: Use AD FS to implement and manage single sign-on
-
Download??Citrix??VPN Client
Instructions
To configure a VPN setup on NetScaler Gateway appliance, complete the following procedure:
-
From NetScaler configuration utility, navigate to Traffic Management > DNS.
-
Select the Name Servers node, as shown in the following screen shot.
Ensure that the DNS Name Server is listed. If it is not available, add a DNS Name Server. -
Expand NetScaler Gateway > Policies.
-
Select the Session node.
-
Activate the Profiles tab of NetScaler Gateway Session Policies and Profiles page and click Add.
Note: For each component you configure in the Configure NetScaler Gateway Session Profile dialog box, ensure that you select the Override Global option for the respective component. -
Activate the Client Experience tab.
-
Type the intranet portal URL in the Home Page field.
If??homepage parameter is set to "nohomepage.html", homepage will not be displayed. When the plug-in starts, a browser instance starts and gets killed automatically. -
Ensure that OFF is selected from the Split Tunnel list.
-
Select OFF from the Clientless Access list.
-
Ensure that Windows/Mac OS X is selected from the Plug-in Type list.
-
Select the Single Sign-on to Web Applications option.
-
Ensure that the Client Cleanup Prompt option is selected, as shown in the following screen shot:
-
Activate the Security tab.
-
Ensure that ALLOW is selected from the Default Authorization Action list, as shown in the following screen shot:
-
Activate the Published Applications tab.
-
Ensure that OFF is selected from the ICA Proxy list under Published Applications option.
-
Click Create.
-
Click Close.
-
Activate the Policies tab of the NetScaler Gateway Session Policies and Profiles page.
-
Create a Session policy with a required??expression or ns_true, as shown in the following screen shot:
-
Bind the Session policy to the VPN virtual server.
Go??to NetScaler Gateway virtual server > Policy. Choose the required session policy (in this example Session_Policy) from the drop-down list.
Additional Resources
For configuration utility changes refer to the following links:
-
Citrix Documentation -??NetScaler 10.1 Configuration Utility Changes
-
Citrix Documentation -??NetScaler 10.5 Configuration Utility Changes
Download Citrix??VPN Client
Supporto Citrix
Traduzione automatica
Questo articolo ??¨ stato tradotto da un sistema di traduzione automatica e non ??¨ stata valutata da persone. Citrix fornisce traduzione automatica per aumentare l'accesso per supportare contenuti; tuttavia, articoli automaticamente tradotte possono possono contenere degli errori. Citrix non ??¨ responsabile di incongruenze, errori o danni derivanti dell'uso di articoli automaticamente tradotte.
Citrix技術支持
自動翻譯
這篇文章被翻譯由一個自動翻譯系統,並沒有受到人們的審查。 Citrix提供自動翻譯,增加獲得支持的內容;但是,自動翻譯的文章可能可以包含錯誤。思傑不負責不一致,錯誤或損壞因使用自動翻譯的文章的結果。
Поддержка Citrix
Tradução automática
Эта статья была переведена автоматической системой перевода и не был рассмотрен людьми. Citrix обеспечивает автоматический перевод с целью расширения доступа для поддержки контента; Однако, автоматически переведенные статьи могут может содержать ошибки. Citrix не несет ответственности за несоответствия, ошибки, или повреждения, возникшие в результате использования автоматически переведенных статей.
시트릭스 지원
자동 번역
이 문서 자동 번역 시스템에 의해 번역 된 사람들에 의해 검토되지 않았다. 시트릭스는 컨텐츠를 지원하기 위해 접근을 높이기 위해 자동 번역을 제공합니다; 그러나, 자동으로 번역 기사 오류를 포함 할 수있다. 시트릭스는 자동으로 번역 된 기사의 사용의 결과로 발생하는 불일치, 오류 또는 손해에 대해 책임을지지 않습니다.