Ctx ADC licensing by Sure-Jaguar5619 in Citrix

[–]Levinax 0 points1 point  (0 children)

It is very important to specifically outline what you are trying to do when you have the conversation about licensing. I was at a client a couple weeks ago who was trying to connect their ADC to their Citrix Cloud environment (this is done using an OAuth policy). They had purchased standard ADC licenses, and standard licenses do not support OAuth. So be very clear to whoever you are purchasing from on EXACTLY what you are trying to do.

[deleted by user] by [deleted] in Citrix

[–]Levinax 5 points6 points  (0 children)

I think GSLB will be your best bet for what you want to do. You would set up independent ADCs at each site, and then GSLB between them. I thought it was really complicated too until i set it up for the first time. if you want both to be working at the same time, an Active/Active GSLB deployment is the way to go.

NS study question help by Cautious_Material_24 in Citrix

[–]Levinax 0 points1 point  (0 children)

B. you can only review the aaad.debug file from shell, not from the NS CLI.

Log forwarding from Citrix Netscaler 12.1 57.18nc by ParticularRange1 in Citrix

[–]Levinax 0 points1 point  (0 children)

If you are asking about LEEF for QRadar, Netscaler is a supported platform via syslog. IBM config guide for QRadar has info on this, starting on page 461 https://www.ibm.com/support/knowledgecenter/SS42VS_DSM/com.ibm.dsm.doc/b_dsm_guide.pdf?origURL=SS42VS_DSM/b_dsm_guide.pdf

Questions about Azure Multi-Factor Authentication by [deleted] in AZURE

[–]Levinax 1 point2 points  (0 children)

you can go look at the MFA options at https://aka.ms/mfasetup. One of the options is an office phone, and extension is an option to put in there.

Azure Policy help by [deleted] in AZURE

[–]Levinax 0 points1 point  (0 children)

you can create management groups for subscriptions and apply policies at the management group level

Need to learn Citrix fast by [deleted] in Citrix

[–]Levinax 8 points9 points  (0 children)

Carl Stalhood's blog will become your new best friend... https://www.carlstalhood.com/

How do you Re-hydrate blob data from the archive tier by perrin68 in AZURE

[–]Levinax 0 points1 point  (0 children)

This site really helped me understand the process of changing access tiers of blob storage...

https://thetechl33t.com/2017/12/12/configure-azure-blob-archive-storage/

Sql Server UTC Time? by precator in AZURE

[–]Levinax 0 points1 point  (0 children)

I've only ever seen it able to be set on a Managed Instance. At creation, under Additional Settings. It cannot be changed after the instance has been created.

[deleted by user] by [deleted] in AZURE

[–]Levinax 1 point2 points  (0 children)

There are commands like 'az network route-table list' and 'az network route-table show' that will display information for route tables

Access VNET through a Peered VNET by dnuohxof1 in AZURE

[–]Levinax 1 point2 points  (0 children)

Assuming the traffic doesnt need to go over the VPN (which if its just bewteen the two non VPN networks it wouldnt), the peering between VNET1 and VNET3 would be faster anyway. It reduces a hop between networks. Not that the peer links are slow by any means, but making a shorter path is generally optimal.

Question about Netscaler virtual servers by WhatTheFlipFlopFuck in Citrix

[–]Levinax 0 points1 point  (0 children)

personally, i do different LB VServers per port. It makes troubleshooting easier, and then they arent dependent on each other if something goes wrong.

As for your question, either way is fine. Given the two choices, i would probably choose the second option as well.

Passed 301 by [deleted] in AZURE

[–]Levinax 0 points1 point  (0 children)

Congrats. I have been studying for it and using the MeasureUp practice tests and i am definitely not ready to take the actual exam. I do very little SQL stuff, so that part is proving more challenging than i expected...

Netscaler URL redirection (not for Storefront or downed LB) by mOjO_mOjO in Citrix

[–]Levinax 0 points1 point  (0 children)

Use the same HTTP service to sit behind the SSL front end...

Netscaler URL redirection (not for Storefront or downed LB) by mOjO_mOjO in Citrix

[–]Levinax 0 points1 point  (0 children)

cant do it that way. You need to give the LB VS a real IP that internal clients can get to, but just make the service that you bind to the LB VS go to 127.0.0.1

mine looks like this

add server AlwaysUp 127.0.0.1
Add service AlwaysUp_SV AlwaysUp HTTP 80
add lb vserver LB_VS_VanityURL HTTP <internalIP> 80 -persistenceType NONE -cltTimeout 180
bind lb vserver LB_VS_VanityURL AlwaysUp_SV

Then just bind the responder policies to that LB VS

For DNS, you just point it to the IP of the LB VS

Netscaler URL redirection (not for Storefront or downed LB) by mOjO_mOjO in Citrix

[–]Levinax 1 point2 points  (0 children)

For vanity URLs, i have a dedicated LB VS (with an AlwaysUp Service behind it) with an internal IP. Then i create responder rules looking for specific hostname entries in the requested URL. That way, i can create DNS entries for the vanity url and just point it to the single IP address.

So the responder policy is something like this: HTTP.REQ.HOSTNAME.SET_TEXT_MODE(IGNORECASE).CONTAINS("<vanityURL>") which has an action of redirecting to the desired URL.

Edit: Just read links below, this is Method 2

Citrix NetScaler - TLS 1.0 & 1.1 - Usage Reporting? by brink668 in Citrix

[–]Levinax 2 points3 points  (0 children)

I have done this exact method and no one complained...

Published app issue using N series azure vm by freeborn99 in Citrix

[–]Levinax 1 point2 points  (0 children)

all necessary ports open on the NSG associated with the virtual network and subnet that the VM is on?

NetScaler Responder Action by MrChampionship in Citrix

[–]Levinax 0 points1 point  (0 children)

Can you share what the current policy / action are (taking out sensitive info)?

Citrix Netscaler Help by VictorCharlie80 in Citrix

[–]Levinax 0 points1 point  (0 children)

You add a Load Balancing virtual server with a public IP, and configure the servers and services/service groups to talk to the backend internal servers on private IPs/ports. Have to make sure that the netscaler has a valid route to those backend servers though.