Configure the NetScaler Gateway appliance by using wizards
-
The first-time setup wizard appears when you log on to the NetScaler Gateway appliance for the first time.
-
The quick configuration wizard helps you configure the correct policies, expressions, and settings for connections to Citrix Endpoint Managementâ„¢ and StoreFront.
-
The NetScaler Gateway wizard helps you configure NetScaler Gateway-specific settings.
-
The setup wizard helps you configure basic NetScaler Gateway settings for the first time.
-
Citrix Endpoint Management Integrated Configuration helps you configure your NetScaler Gateway and Citrix Endpoint Management environment.
-
The Published Applications wizard helps you configure settings for user connections by using Citrix Workspace app.
First-time setup wizard
-
You did not install a license on the appliance.
-
You did not configure a subnet or mapped IP address.
-
If the default IP address of the appliances is 192.168.100.1.
Configure NetScaler Gateway with the first-time setup wizard
Quick Configuration wizard
-
StoreFront connections to Citrix Virtual Apps and Desktops, with the ability to configure multiple instances of the Secure Ticket Authority (STA)
-
Citrix Endpoint Management only
-
StoreFrontâ„¢ only
-
Citrix Endpoint Management and StoreFront together
-
Virtual server name, IP address, and port
-
Redirection from an unsecure to a secure port
-
LDAP server
-
RADIUS server
-
Certificates
-
DNS server
-
Citrix Endpoint Management and Citrix Virtual Apps and DesktopsNote: To enable SSO, you have to manually enable the Single Sign-on to web applications option in the Create NetScaler Gateway Session Profile > Client Experience tab for the session action.
-
Session policies, including policies and profiles for Receiver, Receiver for Web, Citrix Secure Accessâ„¢ client, and Program Neighborhood Agent
-
Clientless access
-
LDAP and RADIUS authentication
Configure settings with the quick configuration wizard
-
Virtual server name, IP address, and port
-
Redirection from an unsecure to a secure port
-
Certificates
-
LDAP server
-
RADIUS server
-
Client certificate for authentication (only for two-factor authentication)
-
Endpoint Management or StoreFront
-
If you select LDAP as your primary authentication type, you can configure RADIUS as the secondary authentication type.
-
If you select RADIUS as your primary authentication type, you can configure LDAP as the secondary authentication type.
-
If you select client certificates as your primary authentication type, you can configure LDAP or RADIUS as the secondary authentication type.
-
Select a certificate that is installed on the appliance.
-
Install a certificate and private key.
-
Select a test certificate. Note: If you use a test certificate, you must add the fully qualified domain name (FQDN) that is in the certificate.
-
When you are on the NetScaler Gateway logon page and select NetScaler Gateway in Deployment Type, the Home tab appears. If you select any other option in Deployment Type, the Home tab does not appear.
-
From the link Create/Monitor NetScaler Gateway in the NetScaler Gateway details pane. The link appears if you install a license that enables NetScaler features. If you license the appliance for NetScaler Gateway only, the link does not appear.
To configure settings with the Quick Configuration wizard
-
In the configuration utility, do one of the following: a. If the appliance is licensed for NetScaler Gateway only, click the Home tab. b. If the appliance is licensed to include NetScaler features, on the Configuration tab, in the navigation pane, click NetScaler Gateway and then in the details pane, under Getting Started, click Configure NetScaler Gateway for Enterprise Store.
-
In the dashboard, click Create New NetScaler Gateway.
-
In NetScaler Gateway Settings, configure the following: a. In Name, type a name for the virtual server. b. In IP address, type the IP address for the virtual server. c. In Port, type the port number. The default port number is 443. d. Select Redirect requests from port 80 to secure port to allow user connections from port 80 to go to port 443.
-
Click Continue.
-
On the Certificate page, do one of the following: a. Click Choose Certificate and then in Certificate, select the certificate. b. Click Install Certificate, and then in Choose Certificate and in Choose Key, click Browse to navigate to the certificate and private key. c. Click Use Test Certificate and then in Certificate FQDN enter the fully qualified domain name (FQDN) contained in the test certificate.
-
Click Continue.
-
In Authentication Settings, do the following: a. In Primary Authentication, select LDAP, RADIUS, or Cert. b. Select an authentication server or configure the settings for the authentication type you selected in the previous step. If you select Cert, either select the client certificate or install a new client certificate. c. In Secondary Authentication, select the authentication type and then configure the authentication server settings.
-
Click Continue.
Configure enterprise store settings
-
Endpoint Management only
-
StoreFront only
-
Endpoint Management and StoreFront together
To configure settings for StoreFront only
-
Click Citrix Virtual Apps and Desktops.
-
In Deployment Type, select StoreFront.
-
In StoreFront FQDN, enter the fully qualified domain name (FQDN) of the StoreFront server.
-
In Receiver for Web Path, leave the default path or enter your own path.
-
Select HTTPS for secure user connections.
-
In Single Sign-on Domain, enter the domain for StoreFront.
-
In STA URL, enter the complete IP address or FQDN of the server running the Secure Ticket Authority (STA) if you deploy StoreFront and provide access to published applications from Citrix Virtual Apps or virtual desktops from Citrix Virtual Desktops.
-
Click Done.
To configure settings for Endpoint Management only
-
Click Citrix Endpoint Management.
-
In App Controller FQDN, enter the FQDN for Endpoint Management.
-
Click Done.
NetScaler Gateway wizard
-
Virtual servers
-
Certificates
-
Name service providers
-
Authentication
-
Authorization
-
Port redirection
-
Clientless access
-
Clientless access for SharePoint
Configure Settings by using the NetScaler Gateway wizard
To start the NetScaler Gateway wizard
-
In the configuration utility, click the Configuration tab and then in the navigation pane, click NetScaler Gateway.
-
In the details pane, under Getting Started, click NetScaler Gateway wizard.
-
Click Next and then follow the directions in the wizard.
Setup Wizard
-
System IP address and subnet mask
-
Mapped IP address and subnet mask
-
Host name
-
Default gateway
-
Licenses
Published Applications wizard
-
Select a virtual server for connections to the server farm.
-
Configure the settings for user connections for StoreFront, single sign-on, and the Secure Ticket Authority.
-
Create or select session policies for SmartAccess.
Integrated Citrix Endpoint Management configuration
-
Load balancing servers for Device Manager.
-
Load balancing servers for Microsoft Exchange with email filtering.
-
Load balancing servers for ShareFile.