Smart Card Logon

  • This topic is empty.
Viewing 4 posts - 1 through 4 (of 4 total)
  • Author
    Posts
  • #5602
    WillCS
    Member
    • Total Post: 2
    • Newbie

    Hi,

    I’m using the V10L with firmware 6.5.0_27. I’d like to be able to use a smartcard with the V10L and once authenticated display the available published applications. When I launch a published app i want it to launch and sigle sign me on. Should be fairly standard.

    I’ve configured the WNOS.ini with Signon=Yes and PNLIteServer=https://server/citrix/pnawyse/config.xml

    I’ve configured a XenAppServices site pnawyse to connect to my farm and allow passthru authentication.

    This all works fine, I get the wyse login prompt, log in with uid, pwd and PNLite contacts the config.xml, enumerates the apps, and displays the icons i have availalbe. If I launch an app then i see the citrix launch box and a few seconds later I get my app displayed. Perfect.

    No I want to achieve the same but using smart card to login.

    So I’ve configured the XenAppServices site allow “the smartcard” authentication type.
    I’ve configured the IIS server require client certs and map my cert to a username.

    So I start up the wyse device and get the login screen, insert smart card, prompts for PIN, enter PIN, connects to PNLIte Server, enumerates apps, and displays icons. Excellent. The problem is now when I launch one of the applications the citrix launch bar appears and then shortly after i’m prompted for a windows user name and password. So it hasn’t passed my credentials through to the ICA applicaiton when using smart card.

    The wyse device will only connect to the PNLIte server when I have Smart Card authentication configured in the XenApp Services , if I have “passthru with smart card” is doesn’t connect.

    On a windows client i seem to remember you could configure some APPSRV.ini settings to allow SSOonICAPAssthru=1 or something like that. What I need is to configure the v10L to pass the credentials through.

    Has any one set this sort of thing up before, or indeed has anyone successfully got a V10L working with citrix using Smartcard and single sign on to applications.

    Hope you can help

    Cheers

    Will

    #17421
    ConfGen
    Keymaster
    • Total Post: 10696
    • Jedi Master
    • ★★★★★★★

    So you say that everything works perfectly with SC if you configure Citrix to “SC” instead of “SC with pass through”?

    CG

    #17451
    WillCS
    Member
    • Total Post: 2
    • Newbie

    Hi Thanks for your reply,

    When I configure WI for “SC” I can logon with smart card but I do not get passthru. e.g once signed on to the PNLite server I launch a published app and get prompted with windows gina logon box i have to log on manually again then my app appears.

    When I configure WI for “passthru with SC” I cannot even logon. I insert smartcard, enter PIN and receive a message from the wyse logon box saying cannot connect to PNLite server, so I do not get as far as seeing my available published apps. The “SC with passthru” sounds like what I want but I can’t even authenticate with the WI when using this setting from a Wyse device.

    When I configure WI for “passthru” I can logon with UID and PWD (not using smartcard this time), see my apps, launch an app and it starts without me having to logon again, e.g i get pass thru.

    So what I’m wanting to achieve is to log on once with a smart card and get access to all my apps without being prompted for credentials / PIN again.

    Does that make sense?

    Cheers

    Will

    Cheers

    Will

    #19247
    tarren
    Member
    • Total Post: 6
    • Newbie

    Using smart card for the purpose you are showing may create certain flaws. I think you should consult a technical person. As authentication is the main tool of being secure.

Viewing 4 posts - 1 through 4 (of 4 total)
  • You must be logged in to reply to this topic.