Gateway

Simplified SaaS app configuration using a template

SaaS apps configuration with single sign-on on Citrix Gateway is simplified by provisioning a template drop-down menu for popular SaaS apps. The SaaS app to be configured can be selected from the menu. The template pre-fills much of the information required for configuring applications. However, the information specific to the customer must still be provided.

Note:

To configure and publish SaaS apps, configure and publish on the Citrix Gateway and then on the app server.

The steps in the next section help you configure and publish apps on Citrix Gateway using a template. Then move on to the section that explains how to configure and publish on the app server.

Configuring and publishing apps using template - Citrix Gateway specific configuration

The following configuration uses the AWS Console app as an example for how to configure and publish an app using a template.

Before you start, you need the following:

  • An admin account for the AWS Console

  • An admin account for Citrix Gateway

The AWS Console configuration steps are as follows:

  1. Configure the AWS Console with the App catalog.

  2. Export AWS Console IdP metadata from Citrix ADC.

  3. Configure IdP into AWS Console.

STEP 1: Configure AWS Console with App Catalog

  1. Click Unified Gateway > Authentication.

    The Integrate with Citrix Products menu

    The Unified Gateway Configuration screen appears.

  2. On the Applications section, click the edit icon. Now, click the plus icon. The Application window appears.

    Applications section showing the edit icon Applications section showing the plus icon

  3. Select SaaS from the Application type.

    Application type window

  4. Select AWS Console from the drop-down list.

    Catalog list

  5. Fill the application template with appropriate values.

    Application template properties Service provider properties

  6. Enter the following SAML configuration details and click Continue.

    Service Provider IDhttps://signin.aws.amazon.com/saml

    Signing Certificate Name – IdP certificate must be selected

    Issuer Name – Issuer name can be filled as per your choice

    Attribute1https://aws.amazon.com/SAML/Attributes/Role

    Attribute1 Expression – Role ARN, IdP ARN, as shown in step 3

  7. Click Done.

STEP 2: Export AWS Console IdP metadata from Citrix Gateway.

  1. Click Unified Gateway > Authentication.

  2. Scroll down and click AWS Console template. The SaaS Application window appears. Click Export link.

    SaaS application window

  3. Metadata opens in a different window. Save the IdP Metadata file

    Metadata example

STEP 3: Configure IdP into AWS Console.

Configuring and publishing apps using template - App server specific configuration

The following links open PDF documents that provide specific guidance for configuring and publishing popular SaaS apps using templates.

Simplified SaaS app configuration using a template