Product Documentation

Routing User Connections Through NetScaler Gateway

Feb 27, 2014

In XenApp and XenDesktop, you can configure the servers to only accept connections that are routed through NetScaler Gateway. In XenApp 6.5, you configure a policy in Citrix AppCenter to route connections through NetScaler Gateway. In XenDesktop 7.1, you use Citrix Studio to configure the settings.

To configure XenApp 6.5 server properties to accept connections routed through NetScaler Gateway only

  1. Click Start > Administrative Tools > Citrix > Management Consoles > Citrix AppCenter.
  2. Expand Citrix Resources > XenApp > farmName, where farmName is the name of the server farm.
  3. Click Policies.
  4. In the center pane, click Computer or User and then click New.
  5. In the New Policy wizard, in Name, type a name for the policy and then click Next.
  6. Under Categories, click Server Settings.
  7. Under Settings, next to Connection access control, click Add.
  8. In the Add Setting - Connection access control dialog box, in Value, select Citrix Access Gateway connections only and then click OK.
  9. Click Next two times and then click Create. XenApp creates the policy.

To configure XenDesktop server properties to accept connections routed through NetScaler Gateway only

You can restrict access to a Delivery Group's machines. You can restrict access for users by using SmartAccess that filters user connections made through NetScaler Gateway. You can perform this task in the Policy node in Studio, or through policy settings as described in Quick reference table.

  1. In Studio, under Delivery Groups, select the Delivery Group you want to restrict.
  2. Click Edit Delivery Group and then click Access policy.
  3. On the Access Policy page, select Connections through NetScaler Gateway. Only connections through the NetScaler Gateway are allowed.
  4. To choose a subset of those connections, select Connections meeting any of the following filters:
    1. Define the NetScaler Gateway site.
    2. Add, edit, or remove the SmartAccess strings that define the allowed user access scenarios for the Delivery Group. For more information about configuring SmartAccess, see Configuring SmartAccess on NetScaler Gateway.