Forum Replies Created
-
AuthorPosts
-
I did, same thing.
Does ThinOS support wildcard certs?
Here’s a copy of my ini with the personal bits edited out. I’ve been using ConfGen to build the ini and as mentioned above I put https://fqdn, fill in the store name and make sure Use Storefront is selected. When the ini is built it comes out looking like the following.
PnliteServer=https://fqdn?storename Storefront=yes
Not sure what’s going on but based on what you’re saying this should be possible on v10L firmware 8.0._512 with Storefront 7.15.
;*************************************************************
;* *
;* This wnos.ini file was generated with the *
;* Configuration Generator 8.4.03 *
;* Copyright by Thomas Moellerbernd *
;* *
;* https://technicalhelp.de *
;* *
;*************************************************************;*************************************************************
;* Time *
;*************************************************************Timeserver=IP Timeformat=”12-hour format” Dateformat=mm/dd/yyyy
TimeZone=’GMT – 05:00′ ManualOverride=yes Daylight=yes Start=030207 End=110107 TimeZoneName=”Eastern” DayLightName=”Eastern”;*************************************************************
;* Network *
;*************************************************************Terminalname=V10L
DelCertificate=All
AddCertificate=AffirmTrust_Certificate_Authority_OV1.crt
AddCertificate=AffirmTrust_Commercial.crt
AddCertificate=WILDCARD.crt
AutoSelectSingleCert=yes
SignOn=Yes
DomainList=”domain”
MaxVNCD=1
VncPassword=”password”
VncPrompt=No Accept=10;*************************************************************
;* ICA *
;*************************************************************Seamless=yes
PnliteServer=https://fqdn Storefront=yes
SessionConfig=ICAI logged into our CA and downloaded the the certificate package for this particular cert. It included 3, so I imported all using the ini. Now I see all 3, one under the other with the final being the wildcard, all under cacerts. Unfortunately I’m still getting the error “SSL BAD HEADER VERSION”
Sorry to be such a pest, but where on the storefront server(s) could I look to verify which cert is being used? I didn’t set the environment up but I’ve been handed the update of the Wyse terms to get them connected to it.
I found a wildcard that’s been used at https://fqdn and tried using it initially. That’s the one that was listed under Unknown CA and says “Not enough information to verify this certificate.” I found another cert that when imported into the Wyse it is listed under cacerts and says is OK. Unfortunately I still get the error “SSL BAD HEADER VERSION”
When I change the ini to be PnliteServer=https://fqdn/citrix/storename/pnagent/config.xml I get the SSL BAD HEADER VERSION error. To me that seems like it’s actually talking to the storefront server but might be a cert related issue.
Thoughts?
Oh, and it’s a wildcard if that matters.
My apologies, back to the certificate as I’m not sure it’s working as it should.
Under the Certificate Center I see the cert, imported via ini, under Unknown CA. When I view the cert, under Certificate Path, Certificate Status, it says “Not enough information to verify this certificate.”
I greatly appreciate all of your help.
Excellent, got that. I still can’t get it to connect to the storefront environment. I’m using your ConfGen app (excellent btw) and when putting in the Citrix Server I’m using https://fqdm and filling in the Storename which automatically checks “Use Storefront.” When looking at the INI it shows as https://fqdn?StoreName Storefront=Yes
Is that correct? When I try to login I’m getting “Citrix sign-on failed.”
Can the INI be used to import the cert?
No sir I have not. Forgive my asking, but how would I go about doing that?
Actually from our Wyse rep. We were about to roll out to a new area at my place of business and needed some quick assistance so we contacted our rep and he came through.
I finally found an answer to my question above. This requires the latest firmware of 7.0_113 to work (based on my experience), but in the ini put the following.
SignOn=Yes IconGroupStyle=folder
-
AuthorPosts