If you have the need for customized names the configuration can only be done via PowerShell. One of the questions which is coming up in every workshop with clients: Is it possible to change the name of the templates? Yes it is possible to change the name to a custom naming schema but you are going to lose the ability to manage the Citrix Federation Service with the Graphical User Interface. This template will issue the actual smart card which is going be used when logging into the VDA. If you miss the renewal the FAS service will stop working. The certificate is valid for 2 years and needs to manually renewed. It will be used for generating CSRs for the virtual smart cards. The request is valid for 24 hours and needs to be manual approved by a CA administrator.Īs soon the previous request got approved the Citrix FAS server certificate is getting enrolled with this template. This template will be used for creating the initial certificate signing request for the Citrix FAS server. When installing the Citrix FAS service we are going to deploy three certificate templates.Ĭitrix_RegistrationAuthority_ManualAuthorization Other Public Key Infrastructure solutions like OpenCA or OpenSSL are not working with the Citrix Federated Authentication Service. Please be aware that it needs to be a Microsoft Certificate Authority which is Active Directory integrated. These smart cards are used during the login proccess of a user session. This means we need to have a working Certificate Authority which is issuing the virtual smart cards. The first important thing you need to know is that Citrix FAS is working with smart card authentication.
0 Comments
Leave a Reply. |
AuthorWrite something about yourself. No need to be fancy, just an overview. ArchivesCategories |