Install Citrix Workspace app for Windows with the /includeSSON switch and restart Citrix Workspace app for the changes to take effect.
Add the URL of the StoreFront or Web Interface FQDN with the appropriate HTTP or HTTPS protocols.Click Security > Local Internet and click Sites.Launch Internet Options from the Control panel.Add the StoreFront server to the list of trusted sites using Internet Explorer.Set-BrokerSite -TrustRequestsSentToTheXmlServicePort $True Modify the Internet Explorer settings On Citrix Virtual Apps and Desktops, run the following PowerShell command as an administrator on the Delivery Controller: Restart Citrix Workspace app for the changes to take effect.Ĭonfigure XML trust services on the Delivery Controller.Select Single Sign-on for Citrix Gateway policy.Under the Computer Configuration node, go to Administrative Template > Citrix Components > Citrix Workspace > User Authentication.
Open the Citrix Workspace app GPO administrative template by running gpedit.msc.You enable single sign-on with Citrix Gateway using the Group Policy Object administrative template.
When Citrix Workspace app is not configured with single sign-on, it automatically switches the authentication method from Pass-through to Explicit, if available.Ĭonfigure single sign-on with Citrix Gateway If Web Interface is configured on a Citrix Virtual Apps and Desktops server, launch XenApp Services Sites > Authentication Methods > enable Pass-through. Launch Store > Workspace for Websites > Manage Authentication methods > enable Domain pass-through. When Citrix Workspace app is not configured with Single Sign-on, it automatically switches the authentication method from Domain pass-through to Username and Password, if available. Launch Citrix Studio, go to Store > Manage Authentication methods > enable Domain pass-through. Use the table below for different use case and its respective configuration: Use caseĬonfigured SSON on StoreFront or Web Interface
Citrix workspace 1911 download upgrade#
You can configure single sign-on on both fresh installation or upgrade setup, using any of the following options:Ĭonfigure single sign-on during fresh installation For more information about configuroing single sign-on using Group Policy Object administrative template, see Configure single sign-on with Citrix Gateway. Starting with Version 1905, all web browsers require you to configure single sign-on using the Group Policy Object administrative template. With earlier releases, when using Google Chrome, Microsoft Edge or Mozilla FireFox, users were able to launch single sign-on sessions even if the feature was not enabled by an administrator. Single Sign-on is not supported if Citrix Workspace app is connected to Citrix Virtual Apps and Desktops using Citrix Gateway. After configuring single sign-on,you can log on to Citrix Workspace app and launch Citrix Virtual Apps and Desktops sessions without having to retype your credentials. When you log on to Citrix Workspace app, your credentials are passed through to StoreFront, along with the enumerated apps and desktops and Start menu settings. Single Sign-on lets you authenticate to a domain and use the Citrix Virtual Apps and Desktops without having to reauthenticate again. You can configure various types of authentication for your Citrix Workspace app, including domain pass-through, smart card, and Kerberos pass-through. To maximize the security of your environment, the connections between Citrix Workspace app and the resources you publish must be secured.