-
Install and configure the NetScaler Gateway appliance
-
Maintain and monitor NetScaler Gateway systems
-
Configure DTLS VPN virtual server using SSL VPN virtual server
-
Integrate NetScaler Gateway with Citrix products
-
Integrate NetScaler Gateway with Citrix Virtual Apps and Desktops
-
Configure settings for your Citrix Endpoint Management Environment
-
Configure load balancing servers for Citrix Endpoint Management
-
Configure load balancing servers for Microsoft Exchange with Email Security Filtering
-
Configure Citrix Endpoint Management NetScaler Connector (XNC) ActiveSync Filtering
-
Allow Access from mobile devices with Citrix Mobile Productivity Apps
-
Configure domain and security token authentication for Citrix Endpoint Management
-
Configure client certificate or client certificate and domain authentication
-
-
NetScaler Gateway Enabled PCoIP Proxy Support for VMware Horizon View
-
Configuring NetScaler Gateway Enabled PCoIP proxy for VMware Horizon View
-
-
Proxy Auto Configuration for Outbound Proxy support for NetScaler Gateway
This content has been machine translated dynamically.
Dieser Inhalt ist eine maschinelle Übersetzung, die dynamisch erstellt wurde. (Haftungsausschluss)
Cet article a été traduit automatiquement de manière dynamique. (Clause de non responsabilité)
Este artículo lo ha traducido una máquina de forma dinámica. (Aviso legal)
此内容已经过机器动态翻译。 放弃
このコンテンツは動的に機械翻訳されています。免責事項
이 콘텐츠는 동적으로 기계 번역되었습니다. 책임 부인
Este texto foi traduzido automaticamente. (Aviso legal)
Questo contenuto è stato tradotto dinamicamente con traduzione automatica.(Esclusione di responsabilità))
This article has been machine translated.
Dieser Artikel wurde maschinell übersetzt. (Haftungsausschluss)
Ce article a été traduit automatiquement. (Clause de non responsabilité)
Este artículo ha sido traducido automáticamente. (Aviso legal)
この記事は機械翻訳されています.免責事項
이 기사는 기계 번역되었습니다.책임 부인
Este artigo foi traduzido automaticamente.(Aviso legal)
这篇文章已经过机器翻译.放弃
Questo articolo è stato tradotto automaticamente.(Esclusione di responsabilità))
Translation failed!
Configure NetScaler Gateway enabled PCoIP proxy for VMware Horizon View
Prerequisites
Version - NetScaler 12.0 or above
Universal License - PCoIP Proxy uses the Clientless Access feature of NetScaler Gateway, which means every NetScaler Gateway connection must be licensed for NetScaler Gateway Universal. On the NetScaler Gateway virtual server, ensure ICA Only is cleared.
Horizon View infrastructure - A functional internal Horizon View infrastructure. Ensure you are able to connect to Horizon View Agents internally without NetScaler Gateway. Ensure that the Horizon View HTTP(S) Secure Tunnel and PCoIP Secure Gateway are not enabled on the View Connection Servers that NetScaler will proxy connections to. Following versions of VMware Horizon view are supported.
- Connection Server: 7.0.1 and above
- Horizon Client: 4.2.0 and above (Windows and Mac)
Firewall Ports:
Ensure the following:
- UDP 4172 and TCP 443 must be open from Horizon View Clients to the NetScaler Gateway VIP.
- UDP 4172 must be open from the NetScaler SNIP to all internal Horizon View Agents.
- PCoIP Proxy is supported on NetScaler deployed behind NAT. Following are the important points to consider:
- Support is based on VPN virtual server FQDN parameter setting
- Supports only publicly accessible FQDN and not IP
- Supports only 443 and 4172 ports
- Must be a static NAT
Certificate – A valid certificate for the NetScaler Gateway virtual server.
Authentication – An LDAP authentication policy/server using advanced syntax.
Unified Gateway (optional) – If Unified Gateway, create the Unified Gateway before adding PCoIP functionality.
RfWebUI Portal Theme – For web browser access to Horizon View, the NetScaler Gateway virtual server must be configured with the RfWebUI theme.
Horizon View Client – The Horizon View Client must be installed on the client device, even if accessing Horizon published icons using the NetScaler RfWebUI portal.
To configure NetScaler Gateway to support PCoIP proxy for VMWare Horizon View:
-
Navigate to Configuration > NetScaler Gateway Policies > PCoIP.
-
Create a virtual server profile and a PCoIP profile on the PCoIP Profiles and Connections page.
-
To create a virtual server profile, on the VServer Profiles tab, click Add.
-
Enter a name for the virtual server profile.
-
Enter an Active Directory Domain Name that is used for single sign-on to View Connection Server, and then click Create. Note: Only a single Active Directory domain is supported per NetScaler Gateway virtual server. Also, the domain name specified here is displayed in the Horizon View Client.
-
Click Login.
-
To create a PCoIP profile, on the Profiles tab, click Add.
-
Enter a name for the PCoIP profile.
-
Enter the connection URL for the internal VMware Horizon View Connection Server, and then click Create.
-
-
Navigate to Configuration > NetScaler Gateway > Policies > Session.
-
On the right, select the Session Profiles tab.
-
On the NetScaler Gateway Session Policies and Profiles page, create or edit a NetScaler Gateway session profile.
-
To create a NetScaler Gateway session profile, click Add, and provide a name.
-
To edit a NetScaler Gateway session profile, select the profile, and click Edit.
-
-
On the Client Experience tab, ensure that the Clientless Access value is set to On.
-
On the Security tab, ensure that the Default Authorization Action value is set to ALLOW.
-
On the PCoIP tab, select the required PCoIP profile, and then click Create. You can also create or edit PCoIP Profiles from this tab.
-
Click Create or OK to finish creating or editing the Session Profile.
-
If you have created a session profile, then you must also create a corresponding session policy.
-
Navigate to Configuration > NetScaler Gateway > Policies > Session.
-
select the Session Policies tab and then click Add.
-
In the Create NetScaler Gateway Session Policy page, enter a name for the policy.
-
In Profile, select an existing profile or click Add and create a profile.
- Add an expression.
- Click Advanced Policy and then click Expression Editor.
- In Expression, select the expression as per your requirement.
- Click OK.
-
-
Bind the created PCoIP virtual server profile and session policy to a NetScaler Gateway virtual server.
-
Go to NetScaler Gateway > Virtual Servers.
-
On the right, either Add a new NetScaler Gateway virtual server, or Edit an existing NetScaler Gateway virtual server.
-
If you are editing an existing NetScaler Gateway virtual server, in the Basic Settings section, click the pencil icon.
-
For both adding and editing, in the Basic Settings section, click More.
-
Use the PCoIP VServer Profile menu to select the required PCoIP virtual server Profile.
-
Scroll down and ensure that ICA Only is cleared. Then click OK to close the Basic Settings section.
-
If you are creating a NetScaler Gateway virtual server, bind a certificate, and bind an LDAP authentication policy.
-
Scroll down to the Policies section and click the plus icon.
-
The Choose Type page defaults to Session and Request. Click Continue.
-
In the Policy Binding section, click Click to select.
-
Select the required Session Policy that has the PCoIP Profile configured, and click Select.
-
In the Policy Binding page, click Bind.
-
If you want to use a web browser to connect to VMware Horizon View, under Advanced Settings, add the Portal Themes section. If you are only using the Horizon View Client to connect to NetScaler Gateway, then you don’t must perform this step.
-
Use the Portal Theme menu to select RfWebUI and click OK.
-
Horizon View published icons are added to the RfWebUI portal.
Note: VMware uses two or more protocols when using any protocol other than RDP. This can cause the requests to be load balanced across two different back-end servers. You can resolve this issue by setting up a single persistency group across all protocols ensuring all connections remain on the same Citrix virtual server.
-
-
Steps to enable USB redirection
USB devices connected to the client machine can be accessed from the virtual desktops and apps. Following are the steps to enable USB redirection:
- Log in to VMware Horizon Administrator Console.
- Navigate to Inventory > View Configuration Servers.
- Select the Connection Servers tab.
- Select a listed Connection Server and Click Edit.
- Under the General tab, select Use Secure Tunnel connection to machine option under HTTP(S) Secure Tunnel. Provide NetScaler Gateway external URL in the External URL field.
Update content switching expression for Unified Gateway
If your NetScaler Gateway virtual server is behind a Unified Gateway (Content Switching Virtual Server), then you must update the Content Switching Expression to include the PCoIP URL paths.
-
In the NetScaler GUI, navigate to Configuration > Traffic Management > Content Switching > Policies.
-
Append the following expression under the Expression area, and then click OK.
http.req.url.path.eq(“/broker/xml”) | http.req.url.path.contains(“/broker/resources”) | http.req.url.path.eq(“/pcoip-client”) |
Use PCoIP gateway
-
To connect, you must have the Horizon View Client installed on the client device. Once installed, you can either use the Horizon View Client’s User Interface to connect to NetScaler Gateway, or you can use the NetScaler Gateway RfWebUI portal page to view the icons published from Horizon.
-
To view the active PCoIP connections, go to NetScaler Gateway > PCoIP.
-
On the right, switch to the Connections tab. The active sessions are displayed with the following data: user name, Horizon View Client IP, and Horizon View Agent Destination IP.
-
To terminate a connection, right-click the Connection tab, and click Kill Connection. Or click Kill All Connections to terminate all PCoIP connections.
Share
Share
This Preview product documentation is Cloud Software Group Confidential.
You agree to hold this documentation confidential pursuant to the terms of your Cloud Software Group Beta/Tech Preview Agreement.
The development, release and timing of any features or functionality described in the Preview documentation remains at our sole discretion and are subject to change without notice or consultation.
The documentation is for informational purposes only and is not a commitment, promise or legal obligation to deliver any material, code or functionality and should not be relied upon in making Cloud Software Group product purchase decisions.
If you do not agree, select I DO NOT AGREE to exit.