|
Installation Documentation
Citrix Server 4.0 - Advanced Access Control Configuration
1. Start the Citrix Advanced Access Control server configuration by clicking Start, All Programs, Citrix, Access Gateway, Server Configuration
![](docs/citrix40/AAC40config/AAC_01_Citrix40Config.png)
2. Confirm the service account credentials are properly set
![](docs/citrix40/AAC40config/AAC_02_Citrix40Config.png)
3. Confirm the database account credentials are properly set
![](docs/citrix40/AAC40config/AAC_03_Citrix40Config.png)
4. Start the Citrix Access Management Console by clicking Start, All Programs, Citrix, Management Consoles and Access Suite Console
![](docs/citrix40/AAC40config/AAC_04_Citrix40Config.png)
5. View the default Access Management Console interface
![](docs/citrix40/AAC40config/AAC_05_Citrix40Config_AccessPolicy.png)
6. Create an Access Policy by expanding the Access Gateway folder, Farm folder, policies, right click on Access policies and select Create access policy
![](docs/citrix40/AAC40config/AAC_06_Citrix40Config_AccessPolicy.png)
7. Enter the access policy name and click Next
![](docs/citrix40/AAC40config/AAC_07_Citrix40Config_AccessPolicy.png)
8. Select Network Resources, Allow Logon and click Next
![](docs/citrix40/AAC40config/AAC_08_Citrix40Config_AccessPolicy.png)
9. Enable Network Resources and allow access
![](docs/citrix40/AAC40config/AAC_09_Citrix40Config_AccessPolicy.png)
10. Enable Allow Logon and allow access and click Next
![](docs/citrix40/AAC40config/AAC_10_Citrix40Config_AccessPolicy.png)
11. Select default filter and click Next
![](docs/citrix40/AAC40config/AAC_11_Citrix40Config_AccessPolicy.png)
12. Check the box to apply this policy to all authenticated users and click Finish
![](docs/citrix40/AAC40config/AAC_12_Citrix40Config_AccessPolicy.png)
13. Create a Connection Policy by right clicking on Connection policies and select Create connection policy
![](docs/citrix40/AAC40config/AAC_13_Citrix40Config_ConnPolicy.png)
14. Enter the connection policy name and click Next
![](docs/citrix40/AAC40config/AAC_14_Citrix40Config_ConnPolicy.png)
15. Enable Launch Secure Access client, Authenticate after system resume, Authenticate after network interruption and click Next
![](docs/citrix40/AAC40config/AAC_15_Citrix40Config_ConnPolicy.png)
16. Define and IP pool for the Access Gateway to assign client IP addresses
![](docs/citrix40/AAC40config/AAC_16_Citrix40Config_ConnPolicy.png)
17. Click Next to continue
![](docs/citrix40/AAC40config/AAC_17_Citrix40Config_ConnPolicy.png)
18. Select default filters and click Next
![](docs/citrix40/AAC40config/AAC_18_Citrix40Config_ConnPolicy.png)
19. Check the box to apply this policy to all authenticated users and click Finish
![](docs/citrix40/AAC40config/AAC_19_Citrix40Config_ConnPolicy.png)
20. Click OK to acknowledge the prompt to restart the gateway appliances for the settings to take effect
![](docs/citrix40/AAC40config/AAC_20_Citrix40Config_ConnPolicy.png)
21. Create an Access Center by expanding the Access Gateway folder, Farm folder, Resources, right click on Access Centers and select Create access center
![](docs/citrix40/AAC40config/AAC_21_Citrix40Config_AccessCenter.png)
22. Enter the access center name and click Next
![](docs/citrix40/AAC40config/AAC_22_Citrix40Config_AccessCenter.png)
23. Check the box to Integrate applications and resources published in Citrix Presentation Server farms and click Next
![](docs/citrix40/AAC40config/AAC_23_Citrix40Config_AccessCenter.png)
24. Select Program Neighborhood and click Next
![](docs/citrix40/AAC40config/AAC_24_Citrix40Config_AccessCenter.png)
25. Leave the default setting to create a policy to grant access later and click Next
![](docs/citrix40/AAC40config/AAC_25_Citrix40Config_AccessCenter.png)
26. Expand the Access Center, Roles and Users, right click on Roles and select Create role
![](docs/citrix40/AAC40config/AAC_26_Citrix40Config_AccessCenter.png)
27. Enter the role name and click Next
![](docs/citrix40/AAC40config/AAC_27_Citrix40Config_AccessCenter.png)
28. Select the Program Neighborhood CDA and click Yes to configure it now
![](docs/citrix40/AAC40config/AAC_28_Citrix40Config_AccessCenter.png)
29. Select the default user settings and click Finish
![](docs/citrix40/AAC40config/AAC_29_Citrix40Config_AccessCenter.png)
30. Assign pages available to members of this role and click Next
![](docs/citrix40/AAC40config/AAC_30_Citrix40Config_AccessCenter.png)
31. Add users and groups to make members of this role and click Finish
![](docs/citrix40/AAC40config/AAC_31_Citrix40Config_AccessCenter.png)
32. Expand the Access Center, Roles and Users, right click on Users and select Add users
![](docs/citrix40/AAC40config/AAC_32_Citrix40Config_AccessCenter.png)
33. Add users or groups and click Next
![](docs/citrix40/AAC40config/AAC_33_Citrix40Config_AccessCenter.png)
34. Review users and groups and click Next
![](docs/citrix40/AAC40config/AAC_34_Citrix40Config_AccessCenter.png)
35. Assign a role to the users and groups, specify if the role is Primary and click Finish
![](docs/citrix40/AAC40config/AAC_35_Citrix40Config_AccessCenter.png)
36. Create a Logon Point by right clicking on Logon Points and select Create logon point
![](docs/citrix40/AAC40config/AAC_36_Citrix40Config_LogonPoint.png)
37. Enter the logon point name and click Next
![](docs/citrix40/AAC40config/AAC_37_Citrix40Config_LogonPoint.png)
38. Select an Access Center from the drop down and click Next
![](docs/citrix40/AAC40config/AAC_38_Citrix40Config_LogonPoint.png)
39. Select default authentication strength and click Next
![](docs/citrix40/AAC40config/AAC_39_Citrix40Config_LogonPoint.png)
40. Select default group authorization and click Next
![](docs/citrix40/AAC40config/AAC_40_Citrix40Config_LogonPoint.png)
41. Click New to enter a Citrix presentation server farm name
![](docs/citrix40/AAC40config/AAC_41_Citrix40Config_LogonPoint.png)
42. Enter the Citrix Presentation Server farm name and XML service port
![](docs/citrix40/AAC40config/AAC_42_Citrix40Config_LogonPoint.png)
43. Add servers running Citrix Presentation Server and click Next
![](docs/citrix40/AAC40config/AAC_43_Citrix40Config_LogonPoint.png)
44. Select default address mode and click Next
![](docs/citrix40/AAC40config/AAC_44_Citrix40Config_LogonPoint.png)
45. Select available Farm names to add
![](docs/citrix40/AAC40config/AAC_45_Citrix40Config_LogonPoint.png)
46. Click Next after setting order of preference
![](docs/citrix40/AAC40config/AAC_46_Citrix40Config_LogonPoint.png)
47. Select default Sound and Window settings and click Next
![](docs/citrix40/AAC40config/AAC_47_Citrix40Config_LogonPoint.png)
48. Configure Workspace Control to Enable users to configure display options when they logon, Enable users to reconnect
(reconnect active and disconnected sessions) and click Next
![](docs/citrix40/AAC40config/AAC_48_Citrix40Config_LogonPoint.png)
49. Select default client configuration settings and click Next
![](docs/citrix40/AAC40config/AAC_49_Citrix40Config_LogonPoint.png)
50. Select Use the selected domain for all users, leave VPN default settings and click Next
![](docs/citrix40/AAC40config/AAC_50_Citrix40Config_LogonPoint.png)
51. Select Allow external (gateway appliance) users access to this logon point and click Finish
![](docs/citrix40/AAC40config/AAC_51_Citrix40Config_LogonPoint.png)
52. Click OK to acknowledge the prompt to run server configuration
![](docs/citrix40/AAC40config/AAC_52_Citrix40Config_LogonPoint.png)
53. Review configured logon points
![](docs/citrix40/AAC40config/AAC_53_Citrix40Config_LogonPoint.png)
54. Deploy the appropriate logon point
![](docs/citrix40/AAC40config/AAC_54_Citrix40Config_LogonPoint.png)
55. Set the appropriate logon point as the default by right clicking on it and setting it as the default
![](docs/citrix40/AAC40config/AAC_55_Citrix40Config_LogonPoint.png)
56. Delete the Sample Logon Point by right clicking on it and deleting it
![](docs/citrix40/AAC40config/AAC_56_Citrix40Config_LogonPoint.png)
57. Remove the Sample Logon Point from the server configuration
![](docs/citrix40/AAC40config/AAC_57_Citrix40Config_LogonPoint.png)
58. Delete the Sample Access policy by right clicking on it and deleting it
![](docs/citrix40/AAC40config/AAC_58_Citrix40Config_LogonPoint.png)
|
|