XenApp/XenDesktop

Lizenz Server Zertifikat
Bindung SSL Zertifikates an Citrix Broker Service
XenApp / XenDesktop Fehler

 

Lizenz Server Zertifikat

C:\Program Files (x86)\VMware\VMware Workstation\openssl.exe

openss1 pkcs12 -in c:\ssl\mycert.pfx  -out c:\ssl\mycert.crt -nokeys
openssl pkcs12 -in c:\ssl\mycert.pfx  -out c:\ssl\mycert.key -nocerts -nodes

 

Bindung SSL Zertifikates an Citrix Broker Service

gwmi win32_product | where name —like "*broker*"
 HKEY_CLASSES_ROOT\Installer\Products\
dir cert:\localmachine\my
 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\SystemCertificates\MY\Certificate

netsh http
add  sslcert ipport=10.0.0.10:443 certhash=e3464a2c3ert29b56a45a064e925c0bf7367adf3 appid={A9A36756-AA9C-4EFA-A7D7-ECA4C8F3CC2E}

netsh http
 add  sslcert ipport=0.0.0.0:443 certhash=e3464a2c3ert29b56a45a064e925c0bf7367adf3 appid={A9A36756-AA9C-4EFA-A7D7-ECA4C8F3CC2E}

XML Port Registry
HKEY_LOCAL_MACHINE\SOFTWARE\Citrix\DesktopServer 
XmlServicesSslPort=443 (DWORD)
C:\Program Files\Citrix\Broker\Service\BrokerService.exe /show

SSL für Desktop Gruppe aktivieren

asnp Citrix.*

Get-BrokerAccessPolicyRule -DesktopGroupName '<delivery-group-name>' | Set-BrokerAccessPolicyRule ‑HdxSslEnabled $true

Set-BrokerSite –DnsResolutionEnabled $true

Enable-VdaSSL – Enable -CertificateThumbPrint "<thumbprint>" -SSLMinVersion “TLS_1.2”  –SSLCipherSuite "COM"

SSL für VDA aktivieren

ISO
\Support\Tools\SslSupport\Enable-VdaSSL.ps1

 

Zurück