Gateway

Configure Citrix Gateway to handle the STA and ICA traffic

When you deploy Citrix Gateway in a double-hop DMZ, you must configure Citrix Gateway in the first DMZ to handle communications with the Secure Ticket Authority (STA) and ICA traffic appropriately. The server running the STA can be bound either globally or to a virtual server.

After you configure the STA, you can bind the STA either globally or to a virtual server.

To configure and bind the STA globally:

  1. In the GUI, on the Configuration tab, expand Citrix Gateway and then click Global Settings.
  2. In the details pane, under Servers, click Bind/Unbind STA Servers to be used by the Secure Ticket Authority.
  3. In the Bind/Unbind STA Servers dialog box, click Add.
  4. In the Configure STA Server dialog box, in URL, type the path to the server running the STA, such as http://mycompany.com or http://ipAddress and then click Create.

To configure and bind the STA to a virtual server:

  1. In the GUI, on the Configuration tab, expand Citrix Gateway and then click Virtual Servers.
  2. In the details pane, select a virtual server and then click Open.
  3. On the Published Applications tab, under Secure Ticket Authority, click Add.
  4. In the Configure STA Server dialog box, in URL, type the path to the server running the STA, such as http://mycompany.com or http://ipAddress and then click Create.

Note:

If the VPN virtual servers share the same next hop virtual server and STA servers, the connection is reset when the common STA server is unbound from a virtual server that shares the same next hop virtual server.

Configure Citrix Gateway to handle the STA and ICA traffic