Article

Citrix Pass Through Using Smart Card in Active Directory Environment

Author Info

30 April 2009 - 4:03pm
Submitted by: dpkiranprabhu

article
Reads:

1517

Score:
0
0
 
Comments:

0

Environment
Configuration:

Citrix Server:

  1. Citrix PS3 W2K3 server.
  2. PKI ActivClient 5.4 (Master_CD_version.zip) plus HF FIX0602012
  3. NSL 6.0 client installed in eDir/LDAP mode and selected windows starts for LDAP auth.
  4. Smart card support is selected.
  5. A user account "user3" has been created in AD with the same eDirectory user name and password.
  6. Allow log on locally and Allow log on through Terminal services was added for "user3".

Client

  1. XP Professional SP1 with Citrix ICA client 8.0
  2. PKI ActivClient 5.4 (Master_CD_version.zip) plus HF FIX0602012
  3. NSL 6_0 installed in eDir/LDAP mode and selected when Windows starts for LDAP auth.
  4. Smartcard support is selected.
  5. ActivCard V2 reader attached.

Changes:

  1. Workstation was been put into Active Directory domain.
  2. Registry settings in Citrix server was changed.
    ginadll contains the value c:\windows\system32\ctxgina.dll
    ctxgina contains the value c:\windows\system32\nwgina.dll
  3. Registry key "UseCNasWindowsUserInCitrix" was created at HKLM\Software\Novell\Login\Ldap.

Sequence flow:

Citrix Server:

  1. Login into NSL gina with the user "admin" who is configured without smart card support.
  2. NSL should be loaded.

Workstation:

  1. Login into NSL with the user "user3" who is configured to store the credentials on the smart card.
  2. Select the NT domain(Citrix server) in the ldap gina.
  3. After successful login, Enter the PIN.
  4. Access the Citrix published application – Application launches successfully

Author Info

30 April 2009 - 4:03pm
Submitted by: dpkiranprabhu




User Comments

© 2009 Novell, Inc. All Rights Reserved.