Forum Discussion
draco_184361
May 09, 2016Nimbostratus
Citrix Receiver via accessing with 2fa not RSA radius server
Dear All
We have a scenario where the user logs in via citrix receiver which is hosted via f5 , we have enabled AD auth through apm and all is working fine.
But now we need to add 2fa .It i...
Yann_Desmarest_
May 09, 2016Nacreous
Hello,
How is your citrix receiver configured ? username/password or username/password/passcode ?
Is it Citrix Receiver for Windows ? Which version of BIG-IP are you running ?
Citrix Receiver for IOS support natively 2-factor authentication but for Windows, you need to be in 11.6.0 HF4 at least and there is a special variable to add in the vpe :
We used variable assign agent with "session.citrix.client_auth_type = expr {"1"}" in front of Logon Page agent. All Receivers can detect two-factor auth in Storefront proxy mode.
- draco_184361May 09, 2016NimbostratusIn the vpe, we have first given to check which type of client request is coming from, the client type if checked citrix reciever , we gave citrx logon prompt , in that we gave two factor mode type. So in logon page , its username ,password and passcode.. Its for windows,ipad as well. Ok so there is required of firmware version for it to work with windows. Hmm.. But what is the flow u give in vpe ?we ll try to make it work in ios atleast then..
- Bonh_155404May 31, 2016NimbostratusHi all Thanks for this post, it has been very useful. I have a question: once you enable Citrix Authentication Type=two-factor and the use enter the passcode in Citrix Receiver, what is the variable to use for retrieving the passcode value in VPE? Thanks Bonh
Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects