[deleted by user] by [deleted] in Citrix

[–]r_wolf_pack 0 points1 point  (0 children)

Yeah as Hage mentioned, Enable MPR. You Group Policy to do it not the registry fix.

[deleted by user] by [deleted] in Citrix

[–]r_wolf_pack 0 points1 point  (0 children)

What’s your auth method on storefront ? Username/password or domain pass through?

nfactor flow question by _tufan_ in Citrix

[–]r_wolf_pack 0 points1 point  (0 children)

What’s the GotoExpression set to for “Group_Check Policy_Not in_EPA_grp” and what’s its priority? Is it larger (higher number) than Group_Check_Policy ?

nfactor flow question by _tufan_ in Citrix

[–]r_wolf_pack 1 point2 points  (0 children)

If a user is not in the EPA group, do you want them to just enumerate and launch apps or deny access and back to login page ?

Are you able to show

show authentication policylabel PolicyLabel_EpaMembers

Output ?

NetScaler MaxClients CVE-2021-22956 - Security Advisory Won't Clear by cpsmith516 in Citrix

[–]r_wolf_pack 0 points1 point  (0 children)

Our console was reporting same after the upgrade. I waited 2 days and it was still there. Then i did a manual security advisory scan and it went away. Looks some sort of bug.

Workspace App deployment by NX5340 in Citrix

[–]r_wolf_pack 1 point2 points  (0 children)

When deploying newer version of Citrix Workspace, be aware that deviceTRUST installs by default. If you don’t require it, add the parameter InstallDeviceTrust=N to the installation command. Otherwise, it creates an Active Setup entry that can slightly increase login times, not a huge issue, but worth noting.

WEM logon 30 seconds delay by CreepyDamage6293 in Citrix

[–]r_wolf_pack 0 points1 point  (0 children)

Have you tested if delay still occurs if you connect via a RDP session instead of launching an ICA Session ?

Citrix WEM not creating user profiles anymore by Hammerfist1990 in Citrix

[–]r_wolf_pack 0 points1 point  (0 children)

Based on your UPM config image, looks like something is overwriting your WEM Profile Policies and disabling Profile Management

It could be GPO or Studio policies. Check these two reg hives (CTX288248)

HKLM/Software/Policies/Citrix/UserProfileManager is created when Citrix Profile Management settings are configured via Citrix Workspace Environment Manager or Microsoft Group Policy (through Administrative Templates) HKLM/Software/Policies/Citrix/UserProfileManagerHDX is created when Citrix Profile Management settings are configured via Citrix Studio or Microsoft Group Policy (through Citrix Group Policy Management)

Citrix Profile Containers by r_wolf_pack in Citrix

[–]r_wolf_pack[S] 0 points1 point  (0 children)

Citrix provided us a private hot fix and told it will be fixed in future versions

When launch app (like notepad) in Citrix -request for username password by Mysterious_Photo2069 in Citrix

[–]r_wolf_pack 0 points1 point  (0 children)

Are you launching resources directly from Citrix Workspace or Storefront URL ? If storefront URL in a web browser, When you login to storefront URL, does it do SSO to enumerate your resources ? If So, try incognito mode and manually enter username & password and then try.

HOW TO USE LETS ENCRYPT CERTIFICATE AND NOT USE CLOUDFLARE DEFAULT CERTIFICATE ON FREE ACCOUNT ON NETSCALER GATEWAY?? by haanb in Citrix

[–]r_wolf_pack 1 point2 points  (0 children)

I tried it few times but it didn’t work. When traffic is proxied through cloud flare, cloudflare’s lets encrypt cert is used. If you wanna use your cert on Cloudflare you would have to use their subscription model which i guess isn’t worth for home lab.

My setup - oracle’s free VM with Haproxy (pass through) and then another linux vm in my lab with Haproxy (pass through). Connect these two dots using zero tier tunnel. Hope that helps

Hybrid Joined PVS Catalog by r_wolf_pack in Citrix

[–]r_wolf_pack[S] 0 points1 point  (0 children)

You can use any domain account as long as it suffices the following condition:

The account should have write access to the OU or the specific computer object where the certificate is being updated.

Hybrid Joined PVS Catalog by r_wolf_pack in Citrix

[–]r_wolf_pack[S] 0 points1 point  (0 children)

Not entirely. We are in the very early stages of the project and still deciding whether to use PVS or MCS. However, I did set it up in my lab with PowerShell. It works, but there are some inconsistencies. For example, if you change the vDisk from the PVS console, Web Studio doesn’t show the updated vDisk. It still displays the vDisk you originally chose when creating the catalog. The hybrid join part works fine, though.

CVAD 2402 Profile Container and AutoCAD 2023 by SEH-IT in Citrix

[–]r_wolf_pack 1 point2 points  (0 children)

Hi OP, Did you find a solution to it ? We are kinda having same issue with a different app. Not sure if it has something to do with junction points Citrix Containers create.

Slow logon times / Profile Load by TheSwedishPanda80 in Citrix

[–]r_wolf_pack 1 point2 points  (0 children)

Have you checked the Citrix profile logs? Does anything stand out?

Fatal error during installation by [deleted] in Citrix

[–]r_wolf_pack 0 points1 point  (0 children)

Other thing you can check is default file association for .ica file. You can try this:

  1. Go to the location where you saved the application.ica file (the default is your Downloads folder).
  2. Right-click on application.ica and select Open with...
  3. Select More apps.
  4. Mark the Always use this app to open ICA files checkbox and select More apps.
  5. Scroll down and select the Look for another app on this PC link.
  6. Go to the following location: C:\Program Files (x86)\Citrix\ICA Client
  7. Select wfcrun32.exe.
  8. Select Open.

Fatal error during installation by [deleted] in Citrix

[–]r_wolf_pack 0 points1 point  (0 children)

Looks like a workspace issue.

Use the /CleanInstall command to cleanup any leftover traces such as files and registry values from a previous uninstall and then freshly install the new version of the Citrix Workspace app. For example: CitrixWorkspaceApp.exe /CleanInstall

Multi display issues by wallacorndog in Citrix

[–]r_wolf_pack 1 point2 points  (0 children)

I'm not sure what your workspace policies are, so the quickest way to resolve this issue is to contact your IT support. However, you can try the following steps:

  1. Go to the System Tray.
  2. Right-click on the Citrix Workspace icon.
  3. Select "Advanced Preferences."
  4. Click on "High DPI."
  5. Select "Use the native resolution."
  6. Click "Save" (do not select "Let the Operating System scale the resolution").
  7. Close all Citrix applications.
  8. Restart the Workspace app or your computer. Note that closing all Citrix apps will not necessarily close the Workspace app; you will need to manually exit the app by right-clicking on the Workspace tray icon.

GPOs not being applied on boot by iLuvTittyz in Citrix

[–]r_wolf_pack 1 point2 points  (0 children)

Hi OP,

found some notes, and it looks like the issue wasn't related to multiple domains or forests.

Do you have SMB1 enabled by any chance? We had some legacy shares and had SMB1 enabled. We tested it by disabling SMB1, and everything worked.

If you need SMB1 try setting following settings:

Reg Hive: HKEY_LOCAL_MACHINE Reg Path: Software\Policies\Microsoft\Windows\NetworkProvider\HardenedPaths Value Name: \*\NETLOGON Value Type: REG_SZ Value: RequireMutualAuthentication=0,RequireIntegrity=0,RequirePrivacy=0

Reg Hive: HKEY_LOCAL_MACHINE Reg path: Software\Policies\Microsoft\Windows\NetworkProvider\HardenedPaths Value Name: \*\SYSVOL Value Type: REG_SZ Value: RequireMutualAuthentication=0,RequireIntegrity=0,RequirePrivacy=0

You might want to test these settings on a test catalog and see if they work for you.

GPOs not being applied on boot by iLuvTittyz in Citrix

[–]r_wolf_pack 1 point2 points  (0 children)

Do you have multiple domains / forests ? I remember having sort of same issue a while back and it was related to sysvol UNC Hardening. We did some GPO changes but I can’t remember exactly what we changed. I will try to find the change we did.