Secure the License Administration Console

May 29, 2014

Steps you can take to secure the License Administration Console:

  • Use HTTPS for the console's Web server communications - HTTPS is the default for new installs. If you are upgrading, you might still need to do this.
  • Require users to log onto the Dashboard
  • Specify a user session timeout

To configure a server certificate file and key file

You can use HTTPS (Hypertext Transfer Protocol Secure) to create a secure channel for console communications over your network. The License Administration Console is set to HTTPS (port 8082) by default for new installations. If you use HTTPS, you must have a valid server certificate. The license server already contains a self-signed certificate, but you can create your own. If you create your own certificate and key file, follow these steps to configure it.

  1. Copy a valid server certificate file and server certificate key file into the \Licensing\LS\conf\ for Windows or /opt/citrix/licensing/LS/conf/ Licenser Server VPX folder of the License Server installation directory.
  2. Click Administration and select the Server Configuration tab.
  3. Click the Secure Web Server Configuration bar.
  4. Enter the location of the server certificate file and the server certificate key file.
  5. Restart the Citrix Licensing service.

To require users to log onto the Dashboard

You can optionally secure the Dashboard by forcing users to enter a password. The Administration area is password-protected for all users.
  1. Click Administration and select the Server Configuration tab.
  2. Click the User Interface bar.
  3. Select Require user to log on to view Dashboard.

To specify a session timeout

You can log out users after a specified time of inactivity, ensuring they do not leave the console unattended.

  1. Click Administration and select the Server Configuration tab.
  2. Click the Web Server Configuration bar.
  3. For Session Timeout, enter the number of minutes that a user can remain inactive before being logged out of the console. The maximum value is 99999 (69 days, 10 hours, 39 minutes).