Federated Authentication Service 2303

Support for Sectigo and Keyfactor Certificate Authorities

Federated Authentication Service (FAS) officially supports Sectigo and Keyfactor Certificate Authorities. With this change, you’re no longer required to use Microsoft Certificate Authority while using FAS.

The FAS support for Sectigo and KeyFactor Certificate Authorities is validated through the Citrix Ready program. The following references for official support are available in the Citrix Ready website:

Note:

The instructions to install any third-party certificate authorities must be obtained from the third-party vendor. The instructions to install FAS remain unchanged.

Multi-tenant support in FAS

We are introducing support for Federated Authentication Service (FAS) across multi-tenant environments. FAS supports single sign-on to DaaS in Citrix Workspace, typically when using AAD or other 3rd-part IdP for Citrix Workspace Authentication. Until now, it has not been possible to use FAS with multi-tenant (CSP) environments. This feature adds support for FAS across multi-tenant environments, allowing the SSO functionality to be provided in these configurations.

For more information, see Enable Federated Authentication Service for a tenant customer.

For information about bug fixes, see Fixed issues.

Federated Authentication Service 2303