Deploy a NetScaler VPX instance on Microsoft Azure
-
Azure cloud computing capabilities
-
NetScaler load balancing and traffic management features
-
Through Azure Marketplace. The NetScaler VPX virtual appliance is available as an image in the Microsoft Azure Marketplace.
-
Using the NetScaler Azure Resource Manager (ARM) json template available on GitHub. For more information, see the GitHub repository for NetScaler solution templates.
Prerequisite
-
Familiarity with Azure terminology and network details. For information, see Azure terminology.
-
Knowledge of a NetScaler appliance. For detailed information the NetScaler appliance, see NetScaler
-
Knowledge of NetScaler networking. See the Networking topic.
How a NetScaler VPX instance works on Azure
-
Management IP address called NSIP address
-
Subnet IP (SNIP) address for communicating with the server farm
-
Virtual server IP (VIP) address for accepting client requests
-
Multi-NIC multi-IP architecture
-
Single NIC multi-IP architecture
-
Single NIC single IP
Multi-NIC multi-IP architecture
Single NIC multi-IP architecture
Single NIC single IP
NetScaler VPX licensing
-
Bring your own license (BYOL): To use the BYOL option, follow these steps:
-
Use the licensing portal on the NetScaler® website to generate a valid license.
-
Upload the generated license to the instance.
-
-
NetScaler VPX Check-in and Check-out license: This licensing model allows you to check out a license from a pool of available licenses and check it back in when no longer needed. For more information and detailed instructions, see NetScaler VPX Check-in and Check-out License.
-
Marketplace subscription licensing is no longer supported for NetScaler VPX instances on Azure.
-
Do a warm restart before making any configuration changes on the NetScaler VPX instance to enable the correct NetScaler VPX license.
VPX performance and Recommended Azure instance types
| VPX performance | Azure instance types | ||
|---|---|---|---|
| VPX 1 NIC/2 NIC | VPX 3 NIC | VPX up to 8 NIC | |
| Up to 200 Mbps | Standard_D2s_v5 | Standard_D8s_v5 | Standard_D16_v5 |
| Up to 1 Gbps | Standard_D4s_v5 | Standard_D8s_v5 | Standard_D16_v5 |
| Up to 5 Gbps | Standard_D8ds_v5 | Standard_D8ds_v5 | Standard_D16_v5 |
| Up to 10 Gbps | Standard_D8s_v5 | Standard_D8s_v5 | Standard_D16_v5 |
Points to note
-
Azure supports VPX throughput up to 10 Gbps. For more information, see the NetScaler VPX Data Sheet.
-
To achieve optimal performance on NetScaler VPX instances with throughput over 1 Gbps, you must enable Azure accelerated networking. It is recommended to use an Azure instance type that supports accelerated networking for this purpose. For more information on configuring Accelerated networking, see Configure a NetScaler VPX instance to use Azure accelerated networking.
-
If you expect that you might have to shut down and temporarily deallocate the NetScaler VPX virtual machine at any time, assign a static Internal IP address while creating the virtual machine. If you do not assign a static internal IP address, Azure might assign the virtual machine a different IP address each time it restarts, and the virtual machine might become inaccessible.
-
For Citrix Virtual Apps and Desktops deployment, a VPN virtual server on a VPX instance can be configured in the following modes:
-
Basic mode, where the
ICAOnlyVPN virtual server parameter is set to ON. The Basic mode works fully on an unlicensed NetScaler VPX instance. -
SmartAccess mode, where the
ICAOnlyVPN virtual server parameter is set to OFF. The SmartAccess mode works for only five NetScaler AAA session users on an unlicensed NetScaler VPX instance.
Note:To configure the SmartControl feature, you must apply a Premium license to the NetScaler VPX instance. -
IPv6 support for NetScaler VPX instance in Azure
-
IPv6 deployments in NetScaler currently do not support Azure backend autoscaling.
-
IPv6 is not supported for NetScaler VPX HA deployment.
Limitations
-
The Azure architecture does not accommodate support for the following NetScaler features:
-
Gratuitous ARP (GARP)
-
L2 Mode
-
Tagged VLAN
-
Dynamic Routing
-
virtual MAC
-
USIP
-
Clustering
-
-
When using a NetScaler VPX instance with a throughput exceeding 3 Gbps, the actual network throughput might not align with the throughput specified in the instance's license. However, other features such as SSL throughput and SSL transactions per second might improve.
-
The deployment ID that Azure generates during virtual machine provisioning isn’t visible to the user in ARM. You can’t use the deployment ID to deploy NetScaler VPX appliance on ARM.