Forum Discussion

tolinrome_13817's avatar
tolinrome_13817
Icon for Nimbostratus rankNimbostratus
Apr 15, 2014

citrix web traffic

Hello everyone, Our users currently connect from outside via web to citrix.domain.com and (nat and firewall rules in place) and all works well. On the F5 my goal is to nat to the F5 from outside and create vips for the internal servers. Am I required to use or create the citrix templates? Basically I just want to know if I can just redirect the nat from outside to F5 and create a vip for the server with citrix traffic (1494\2598), or do I need to use the citrix app etc? I do not plan on replacing the citrix web server. Thanks.

 

5 Replies

  • If you're talking about using the iApp, you don't have to use it. It's just one way of simplifying the proxy configuration for Citrix. You're more than welcome to build the configurations yourself.

     

  • Yes the iApp, sorry. With a simple http proxying for example, it's very simple, create the vip (pool and member) and use http and thats it. But with citrix is it the same? Do I just do the same as I would with the http example and use citrix ports instead? Or is there more to it since its Citrix? I want to simplify the process. If I dont have to use the iApp I dont want to. I dont plan on using the F5 as the citrix web presentation server replacement. It seems if I choose to use the iApp (Application Services) citirx xen app template its wants the IP address that would be used for the web interface server and xml broker servers, but i just want to simply proxy. Thanks.

     

  • The iApp is also going to do configurations other than just the virtual server and pool, if applicable. Things like profiles (SSL, TCP) and health monitors.

     

  • But with citrix is it the same? Do I just do the same as I would with the http example and use citrix ports instead? Or is there more to it since its Citrix?

     

  • kunjan's avatar
    kunjan
    Icon for Nimbostratus rankNimbostratus

    One important step done by iApp is to enable vdi plugin (11.4 above) by checking the 'VDI & Java Support' for the VS which front Web Interface pool.

     

     

    Since you are looking to put Citrix infra behind F5, this is required to patch ICA file so that ICA traffic is proxied thru F5. Yes, you can enable this manually as well. iApp also helps to add iRule datagroup and XML broker VS.

     

    So the configuration required is not just the enabling the proxy for the Citrix ports.