100%(3)3 out of 3 people found this document helpful
This preview shows page 72 - 75 out of 110 pages.
•Enter 192.168.30.31(This is XD1.) •click ok . •Click Done •Add the second service •Enter Svc_xml2 under Service Name. •Enter 192.168.30.32. (This is XD2.)click ok and Done. •Click ok •Click Done. Configure Load balancing Virtual server •Click on Virtual Serversand click Add. •Enter lb_vsrv_xmlunder Name. •Enter 172.21.10.115under IP address. (This is the VIP for the load balancing virtual server for the XenDesktop Controller XML Broker communication.) •Click on No Load balancing Server Bindingand click Click to Selectselect svc1_xml, svc2_xml2and click Bind. •Click continue. •Click on Persistence and select SOURCEIP . •Click ok and Done. 8.Add SNIP in Subnet of Load Balancing VIP. •Navigate to System>Network>IPsand click Add. •Enter 172.21.10.119under IP Address •Enter 255.255.255.0 under Netmask. •Select SNIP under the dropdown. •Uncheck Enable Management Access Control to support the below listed applications and confirm. •Click Create Note: There is a design change from NetScaler 11.0-67+ builds, where when you add StoreFront URL in NetScaler Gateway session profile, NetScaler will internally try to probe the load balancing VIP that is added. In order to counter this we need to configure SNIP in subnet of Load balancing VIP. 9.Save NetScaler Configuration and Confirm.
73 Review Settings 1.View the NetScaler Gateway Virtual Server configuration: •Navigate to NetScaler Gateway > Virtual Servers. •Click UG_VPN_ugw_gatewayand click Edit. View STA Configuration: •Click STA Serversunder the Published Applications category. •Verify the STA Servers are configured using https://. •Verify both STA Servers are in an UP state and an STA ID (Auth ID) is displayed. •Click Close. 2.View Session Policies bound to the NetScaler Gateway Virtual Server: •Click Session Policiesunder the Policies category. •Verify two new policies generated by the wizard are bound: PL_OS_172.21.10.150 and PL_WB_172.21.10.150. Click Closeto close the policy binding list. Click Doneto close the virtual server properties. These policies will be explored and updated in the next task. Update Session and Authorization Policies Step Action 1.Remain connected to the NetScaler configuration utility for the HA Pair using the NSMGMT SNIP at .
74 2.Edit Session Profile for ICA Proxy only configuration (without Client Choices): •Navigate to NetScaler Gateway > Policies > Session. •Click Session Profiles. •Select AC_WB_172.21.10.150and click Edit. Update the following settings: Published Applications: •Web Interface Address: Client Experience (Advanced Settings): General •Client Choices: Disabled(Unchecked) (Override global: Enabled) Remember: After enabling Override global, check then uncheck the Client Choices option to clear the value. Click OK. NOTE: About the changes to the policy: •Due to our existing policies enabling VPN and Clientless Access options, users connecting will generally get presented with a Client Choices prompt. To make this an ICA Proxy only connection, the Client Choices option is being disabled as an override setting.