Product Documentation

Routing User Connections Through Citrix Gateway

In Citrix XenApp and Citrix XenDesktop, you can configure the servers to only accept connections that are routed through Citrix Gateway. In XenApp 6.5, you configure a policy in Citrix AppCenter to route connections through Citrix Gateway. In XenDesktop 7.1, you use Citrix Studio to configure the settings.

To configure XenApp 6.5 server properties to accept connections routed through Citrix Gateway only

  1. Click Start > Administrative Tools > Citrix > Management Consoles > Citrix AppCenter.
  2. Expand NetScaler Resources > XenApp > farmName, where farmName is the name of the server farm.
  3. Click Policies.
  4. In the center pane, click Computer or User and then click New.
  5. In the New Policy wizard, in Name, type a name for the policy and then click Next.
  6. Under Categories, click Server Settings.
  7. Under Settings, next to Connection access control, click Add.
  8. In the Add Setting - Connection access control dialog box, in Value, select Citrix Access Gateway connections only and then click OK.
  9. Click Next two times and then click Create. XenApp creates the policy.

To configure XenDesktop server properties to accept connections routed through Citrix Gateway only

You can restrict access to a Delivery Group’s machines. You can restrict access for users by using SmartAccess that filters user connections made through Citrix Gateway. You can perform this task in the Policy node in Studio, or through policy settings as described in Quick reference table.

  1. In Studio, under Delivery Groups, select the Delivery Group you want to restrict.
  2. Click Edit Delivery Group and then click Access policy.
  3. On the Access Policy page, select Connections through Citrix Gateway. Only connections through the Citrix Gateway are allowed.
  4. To choose a subset of those connections, select Connections meeting any of the following filters:
    1. Define the Citrix Gateway site.
    2. Add, edit, or remove the SmartAccess strings that define the allowed user access scenarios for the Delivery Group. For more information about configuring SmartAccess, see Configuring SmartAccess on Citrix Gateway.