Configure Citrix FAS
Steps to Install and configure FAS
To install and configure FAS in your setup, see Install and configure.
FAS Do’s and Dont’s
- It is mandatory to Enable the FAS plug-in for the SRS Store only (using the PowerShell script) as we are using Citrix Virtual Apps and Desktops StoreFront.
-
Check the rule on your FAS server, to ensure your STF is allowed in the Manage StoreFront Permissions page.
- Be aware that by default, there is a DENY entry for Domain Computers. On windows DENY always “wins”.
- Verify if the permissions from Storefront servers for groups such as domain computers is not set to Deny.
- Verify if FAS rules > access control > domain computers is set to Allow.
-
Ensure the domain users are added in the FAS console.
- FAS console > Rule Default > restrictions > Manage user permissions check if you have the domain user here.
- Set the Domain users for FAS user authentication in the FAS console to allowed.
-
Storefront servers should be authorized to use FAS by default, if not, do it explicitly.
- On the FAS server, open Citrix Federated Authentication Service console.
- Go to the Rules tab, select the appropriate policy and click the pencil icon to edit.
- On the left menu select Access control and click the Manage StoreFront access permissions link.
- In the Permission for StoreFront Servers page, add your StoreFront servers and give them the Assert Identity permission and click OK.
Configure Citrix FAS
Copied!
Failed!