Citrix Endpoint Management

Connectivity checks

From the Endpoint Management Troubleshooting and Support page, you can check the Endpoint Management connection to Citrix Gateway and to other servers and locations. To run Endpoint Management connectivity checks, you need the Support or the Admin role. Set this role using Role-Based Access Control (RBAC). For more information on assigning roles, see Configure roles with RBAC.

Run Endpoint Management connectivity checks

  1. In the Endpoint Management console, click the wrench icon in the upper-right corner of the console. The Troubleshooting and Support page appears.

  2. Under Diagnostics, click Endpoint Management Connectivity Checks. The Endpoint Management Connectivity Checks page appears. If your Endpoint Management environment contains clustered nodes, all nodes are shown.

    Endpoint Management Connectivity Checks

  3. Select the servers you want to include in the connectivity test and then click Test Connectivity. The test results page appears.

    Endpoint Management Connectivity Checks

  4. Select a server in the test results table to see detailed results for that server.

    Endpoint Management Connectivity Checks

For information about connectivity checks that Endpoint Management can perform and their details, see Connectivity check details.

Conducting Citrix Gateway connectivity checks

  1. On the Troubleshooting and Support page, under Diagnostics, click Citrix Gateway Connectivity Checks. The Citrix Gateway Connectivity Checks page appears. The table is empty if there is no connection between Endpoint Management and Citrix Gateway.

    Citrix Gateway Connectivity Checks

  2. Click Add. The Add Citrix Gateway Server dialog box appears.

    Citrix Gateway Connectivity Checks

  3. In Citrix Gateway Management IP, type the management IP address for the server running Citrix Gateway that you want to test.

    If you’re conducting a connectivity check for a Citrix Gateway server that has already been added before, the IP address is provided.

  4. Type your administrator credentials for this Citrix Gateway.

    If you’re conducting a connectivity check for a Citrix Gateway server that has already been added before, the user name is provided.

  5. Click Add. The Citrix Gateway is added to the table on the Citrix Gateway Connectivity Checks page.

  6. Select the Citrix Gateway server and then click Test Connectivity. The results appear in a test results table.

  7. Select a server in the test results table to see detailed results for that server.

Connectivity check details

The following table lists various connectivity checks that Endpoint Management can perform and includes details about each check.

Connectivity to IP address or FQDN Details
Apple Push Notification Server api.push.apple.com Checks the connectivity between Apple Push Notification Server and the Endpoint Management node. Apple Push Notification Server is required to send messages to iOS, macOS, and tvOS devices.
Apple Feedback Push Notification Server feedback.push.apple.com Checks connectivity between Apple Feedback Server and the Endpoint Management node. Apple Feedback Push Notification Server gives you information about failed remote notifications sent to iOS and macOS devices.
Citrix License Server IP address of License Server Checks connectivity between Citrix License Server and the Endpoint Management node. Servers running Citrix products contact Citrix License Server to obtain licenses.
Citrix Gateway FQDN of Citrix Gateway configured in Endpoint Management Checks connectivity between Citrix Gateway and the Endpoint Management node. Citrix Gateway is used by Endpoint Management client apps (such as Secure Mail and Secure Web) to connect through a VPN server for access to internal networks.
Database IP address or FQDN of Database Server Checks connectivity between the Endpoint Management database and the Endpoint Management node.
Domain Name System (DNS) IP address configured in Endpoint Management Checks connectivity between the DNS server and the Endpoint Management node.
Secure Ticket Authority service localhost Checks the Endpoint Management node connection to authentication services, STA (Secure Ticket Authority) services, and cluster services.
Firebase Cloud Messaging (FCM) Server   Checks connectivity between FCM Server and the Endpoint Management node. Using FCM, you can notify a client app that a new email or other data is available to sync. You can send notification messages to drive user engagement and retention. FCM is a substitute for Google Cloud Messaging (GCM).
Google Play play.google.com Checks connectivity between Google Store Server and the Endpoint Management node. Google Play is used to offer services that include a managed, private enterprise app delivery store.
iTunes Store/Volume Purchase vpp.itunes.apple.com Checks connectivity between Apple Store Server and the Endpoint Management node. Apple Store is used to offer services that include a managed, private enterprise app delivery store.
LDAP IP address or FQDN of LDAP configured in Endpoint Management Checks connectivity between the LDAP server and the Endpoint Management node.
Microsoft Push Notification Server sin.notifiy.windows.com Checks connectivity between Windows Notification Server and the Endpoint Management node. Windows Notification Server is used to send messages to Windows devices.
Content Collaboration Service IP address or FQDN of Content Collaboration Service configured in Endpoint Management Checks connectivity between Content Collaboration Service and Endpoint Management. Content Collaboration Service is a secure cloud-based platform for businesses to store and share large files.
Windows Desktop/Tablet Store windows.microsoft.com Checks connectivity between the Windows Desktop/Tablet Store and the Endpoint Management node. Windows Desktop/Tablet Store is used to offer services that include a managed, private enterprise app delivery store.
Windows Security Token Service login.live.com Checks connectivity between Windows Security Token Server and the Endpoint Management node. Windows Security Token Service supports two-factor authentication (domain plus security token) for Windows devices.
Connectivity checks